5
CVSSv2

CVE-2014-7883

Published: 15/02/2015 Updated: 09/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

HP Universal CMDB (UCMDB) Probe 9.05, 10.01, and 10.11 enables the HTTP TRACE method, which allows remote malicious users to obtain sensitive information by reading the headers of a response.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hp universal configuration management database 10.11

hp universal configuration management database 10.01

hp universal configuration management database 9.05

Exploits

Mogwai Security Advisory MSA-2015-02 ---------------------------------------------------------------------- Title: Hewlett-Packard UCMDB - JMX-Console Authentication Bypass CVE-ID: CVE-2014-7883 Product: Hewlett-Packard Universal CMDB (UCMDB) Affected versions: UCMDB 1010 (Other versions might also be affected) Impact: high Remote: yes Produc ...
Hewlett-Packard Universal CMDB version 1010 suffers from a jmx-console related authentication bypass vulnerability ...