CVE-2016-2012: High severity hp network node manager i vulnerability
Published May 7, 2016
·Updated
HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote attackers to bypass authentication via unspecified vectors.
Affected Software
6 affected components
HP Network Node Manager i=9.20
HP Network Node Manager i=9.23
HP Network Node Manager i=9.24
HP Network Node Manager i=9.25
HP Network Node Manager i=10.00
HP Network Node Manager i=10.01
Remediation
Event History
May 7, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-2012?
The severity of CVE-2016-2012 is classified as high due to its ability to allow remote attackers to bypass authentication.
2
How do I fix CVE-2016-2012?
To fix CVE-2016-2012, it is recommended to upgrade HPE Network Node Manager i to a version that is not affected by this vulnerability.
3
Which versions of HPE Network Node Manager i are affected by CVE-2016-2012?
Affected versions of HPE Network Node Manager i include 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01.
4
What type of attack is enabled by CVE-2016-2012?
CVE-2016-2012 enables attackers to perform unauthorized access through authentication bypass.
5
Is there a patch available for CVE-2016-2012?
Yes, users should check for a security patch or update from HPE that addresses CVE-2016-2012.