CVE-2016-1993: High severity hp system management homepage vulnerability
Published Mar 18, 2016
·Updated
HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.
Affected Software
1 affected component
HP System Management Homepage<=7.5.3.1
Remediation
Event History
Mar 18, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1993?
CVE-2016-1993 is classified as a medium severity vulnerability.
2
How do I fix CVE-2016-1993?
To fix CVE-2016-1993, upgrade to HPE System Management Homepage version 7.5.4 or later.
3
What type of attack does CVE-2016-1993 enable?
CVE-2016-1993 allows remote authenticated users to obtain sensitive information or modify data.
4
Which versions of software are affected by CVE-2016-1993?
CVE-2016-1993 affects HPE System Management Homepage versions prior to 7.5.4.
5
Is CVE-2016-1993 exploitable without authentication?
CVE-2016-1993 requires remote authenticated access for exploitation.