CVE-2021-26578

A potential security vulnerability has been identified in HPE Network Orchestrator (NetO) version(s): Prior to 2.5. The vulnerability could be remotely exploited with SQL injection.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hpe:network_orchestrator:*:*:*:*:*:*:*:*

History

25 Mar 2021, 19:23

Type Values Removed Values Added
References (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn04097en_us - (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn04097en_us - Vendor Advisory
CWE CWE-89
CPE cpe:2.3:a:hpe:network_orchestrator:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5

22 Mar 2021, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2021-03-22 18:15

Updated : 2023-12-10 13:41


NVD link : CVE-2021-26578

Mitre link : CVE-2021-26578

CVE.ORG link : CVE-2021-26578


JSON object : View

Products Affected

hpe

  • network_orchestrator
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')