First published: Wed Sep 16 2015(Updated: )
HP UCMDB 10.00 and 10.01 before 10.01CUP12, 10.10 and 10.11 before 10.11CUP6, and 10.2x before 10.21 allows local users to obtain sensitive information via unspecified vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Universal Configuration Management Database | =10.00 | |
HP Universal Configuration Management Database | =10.01 | |
HP Universal Configuration Management Database | =10.10 | |
HP Universal Configuration Management Database | =10.11 | |
HP Universal Configuration Management Database | =10.21 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5440 is classified as a medium-severity vulnerability due to the potential exposure of sensitive information to local users.
To fix CVE-2015-5440, upgrade HP Universal Configuration Management Database to versions 10.01CUP12, 10.11CUP6, or 10.21.
CVE-2015-5440 affects local users of HP Universal Configuration Management Database versions 10.00, 10.01, 10.10, 10.11, and versions prior to 10.21.
CVE-2015-5440 allows local users to access unspecified sensitive information from the affected versions of HP UCMDB.
There are no recommended workarounds for CVE-2015-5440; the only solution is to update to the secure versions.