CVE-2016-2013: Infoleak
Published May 7, 2016
·Updated
HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to obtain sensitive information via unspecified vectors.
Affected Software
6 affected components
HP Network Node Manager i=9.20
HP Network Node Manager i=9.23
HP Network Node Manager i=9.24
HP Network Node Manager i=9.25
HP Network Node Manager i=10.00
HP Network Node Manager i=10.01
Remediation
Event History
May 7, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-2013?
CVE-2016-2013 is classified as a medium severity vulnerability.
2
Who is affected by CVE-2016-2013?
CVE-2016-2013 affects users of HPE Network Node Manager i versions 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01.
3
How do I fix CVE-2016-2013?
To fix CVE-2016-2013, update HPE Network Node Manager i to the latest version provided by HPE.
4
What type of data can be leaked due to CVE-2016-2013?
CVE-2016-2013 can potentially allow remote authenticated users to access sensitive information.
5
Is CVE-2016-2013 exploitable externally?
CVE-2016-2013 is not directly exploitable from external networks as it requires authenticated access.