Vulnerability Description
Unspecified vulnerability in HP WebInspect 7.x through 10.4 before 10.4 update 1 allows remote authenticated users to bypass intended access restrictions via unknown vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Webinspect | >= 7.8, <= 10.4 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/75036Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032478Third Party AdvisoryVDB Entry
- https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c0Vendor Advisory
- https://www.exploit-db.com/exploits/37250/ExploitThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/75036Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032478Third Party AdvisoryVDB Entry
- https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c0Vendor Advisory
- https://www.exploit-db.com/exploits/37250/ExploitThird Party AdvisoryVDB Entry
FAQ
What is CVE-2015-2125?
CVE-2015-2125 is a vulnerability with a CVSS score of 4.0 (MEDIUM). Unspecified vulnerability in HP WebInspect 7.x through 10.4 before 10.4 update 1 allows remote authenticated users to bypass intended access restrictions via unknown vectors.
How severe is CVE-2015-2125?
CVE-2015-2125 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-2125?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Webinspect.