Vulnerability Name: | CVE-2015-2108 (CCN-101766) | ||||||||
Assigned: | 2015-03-16 | ||||||||
Published: | 2015-03-16 | ||||||||
Updated: | 2016-11-30 | ||||||||
Summary: | Unspecified vulnerability in Powershell Operations in HP Operations Orchestration 9.x and 10.x allows remote authenticated users to obtain sensitive information via unknown vectors. | ||||||||
CVSS v3 Severity: | 2.6 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 3.5 Low (CVSS v2 Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N) 2.6 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N/E:U/RL:OF/RC:C)
2.6 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-200 | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: MITRE Type: CNA CVE-2015-2108 Source: BID Type: UNKNOWN 73320 Source: SECTRACK Type: Third Party Advisory, VDB Entry 1031987 Source: XF Type: UNKNOWN hp-operations-cve20152108-info-disc(101766) Source: HP Type: Not Applicable SSRT101980 Source: CCN Type: HPSBMU03291 rev.1 HP Operations Orchestration running Powershell Operations, Remote Disclosure of Information | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |