CVE-2014-2634: Critical severity hp service manager vulnerability
Published Aug 23, 2014
·Updated
Unspecified vulnerability in the server in HP Service Manager (SM) 7.21 and 9.x before 9.34 allows remote attackers to bypass intended access restrictions, and modify data or cause a denial of service, via unknown vectors.
Affected Software
6 affected components
hp Service Manager=7.21
hp Service Manager=9.21
hp Service Manager=9.30
hp Service Manager=9.31
hp Service Manager=9.32
hp Service Manager=9.33
Event History
Aug 23, 2014
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-2634?
CVE-2014-2634 is classified as a high severity vulnerability due to its potential for data modification and denial of service.
2
How do I fix CVE-2014-2634?
To mitigate CVE-2014-2634, upgrade to HP Service Manager version 9.34 or later.
3
What versions of HP Service Manager are affected by CVE-2014-2634?
HP Service Manager versions 7.21 and 9.21 through 9.33 are affected by CVE-2014-2634.
4
What types of attacks can be executed using CVE-2014-2634?
CVE-2014-2634 allows remote attackers to bypass access restrictions, modify data, or initiate denial of service attacks.
5
Is CVE-2014-2634 a remote vulnerability?
Yes, CVE-2014-2634 can be exploited by remote attackers without physical access to the system.