Vulnerability Description
An authentication vulnerability in HPE SiteScope product versions 11.2x and 11.3x, allows read-only accounts to view all SiteScope interfaces and monitors, potentially exposing sensitive data.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Sitescope | 11.20 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/100989
- https://softwaresupport.hpe.com/km/KM02948051
- https://www.auscert.org.au/bulletins/52758
- http://www.securityfocus.com/bid/100989
- https://softwaresupport.hpe.com/km/KM02948051
- https://www.auscert.org.au/bulletins/52758
FAQ
What is CVE-2017-14349?
CVE-2017-14349 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An authentication vulnerability in HPE SiteScope product versions 11.2x and 11.3x, allows read-only accounts to view all SiteScope interfaces and monitors, potentially exposing sensitive data.
How severe is CVE-2017-14349?
CVE-2017-14349 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2017-14349?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Sitescope.