First published: Sat Apr 05 2014(Updated: )
Unspecified vulnerability in HP IceWall Identity Manager 4.0 through SP1 and 5.0 and IceWall SSO 10.0 Password Reset Option, when Apache Commons FileUpload is used, allows remote authenticated users to cause a denial of service via unknown vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HPE IceWall | =4.0 | |
HPE IceWall | =4.0-sp1 | |
HPE IceWall | =5.0 | |
HPE IceWall SSO Certified | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-2600 is classified as a denial of service vulnerability affecting specific versions of HP IceWall Identity Manager and HP IceWall SSO.
To mitigate CVE-2014-2600, upgrade to the latest versions of HP IceWall Identity Manager and IceWall SSO as recommended by HP.
CVE-2014-2600 affects HP IceWall Identity Manager versions 4.0 through SP1 and 5.0, along with IceWall SSO Password Reset Option version 10.0.
Yes, CVE-2014-2600 can be exploited by remote authenticated users, leading to potential denial of service.
CVE-2014-2600 is an unspecified denial of service vulnerability that can disrupt service availability.