6.6
CVSSv3

CVE-2019-12000

Published: 17/07/2020 Updated: 21/07/2021
CVSS v2 Base Score: 5.4 | Impact Score: 6.4 | Exploitability Score: 5.5
CVSS v3 Base Score: 6.6 | Impact Score: 5.9 | Exploitability Score: 0.7
VMScore: 481
Vector: AV:N/AC:M/Au:M/C:P/I:P/A:P

Vulnerability Summary

HPE has found a potential Remote Access Restriction Bypass in HPE MSE Msg Gw application E-LTU prior to version 3.2 when HTTPS is used between the USSD and an external USSD service logic application. Update to version 3.2 and update the HTTPS configuration as described in the HPE MSE Messaging Gateway Configuration and Operations Guide.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hp mse msg gw application e-ltu