CVE-2017-14349

An authentication vulnerability in HPE SiteScope product versions 11.2x and 11.3x, allows read-only accounts to view all SiteScope interfaces and monitors, potentially exposing sensitive data.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hp:sitescope:11.20:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.21:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.22:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.23:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.24:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.24.391:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.30:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.30.521:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.31:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.32:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.33:*:*:*:*:*:*:*

History

07 Nov 2023, 02:38

Type Values Removed Values Added
References (CONFIRM) https://softwaresupport.hpe.com/km/KM02948051 - Permissions Required () https://softwaresupport.hpe.com/km/KM02948051 -
References (BID) http://www.securityfocus.com/bid/100989 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/100989 -
References (AUSCERT) https://www.auscert.org.au/bulletins/52758 - Mailing List, Third Party Advisory () https://www.auscert.org.au/bulletins/52758 -

Information

Published : 2017-09-30 01:29

Updated : 2023-12-10 12:15


NVD link : CVE-2017-14349

Mitre link : CVE-2017-14349

CVE.ORG link : CVE-2017-14349


JSON object : View

Products Affected

hp

  • sitescope
CWE
CWE-269

Improper Privilege Management