First published: Wed Oct 16 2013(Updated: )
HP Service Manager 9.30 through 9.32 does not properly manage privileges, which allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Service Manager | =9.30 | |
HP Service Manager | =9.31 | |
HP Service Manager | =9.32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4831 is rated as a Medium severity vulnerability due to its potential to allow unauthorized access to sensitive information.
To mitigate CVE-2013-4831, update to HP Service Manager versions 9.33 or later where the privilege management issue has been addressed.
CVE-2013-4831 affects users of HP Service Manager versions 9.30 through 9.32 that have improperly managed privileges.
CVE-2013-4831 can be exploited by remote authenticated users to access sensitive information or modify data without proper authorization.
CVE-2013-4831 is not a zero-day vulnerability as it was publicly disclosed and has available patches from HP.