CVE-2017-8978: Infoleak
Published Feb 15, 2018
·Updated
A Remote Unauthorized Disclosure of Information vulnerability in HPE IceWall Products version MFA 4.0 proxy was found.
Affected Software
5 affected components
HP IceWall MCRP=4.0
HP Icewall Mfa=4.0
HP Icewall Mfa=4.0
HP IceWall SSO=10.0-p8
HP IceWall SSO=11.0
Event History
Feb 15, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-8978?
CVE-2017-8978 has a medium severity rating, indicating potential impact on confidentiality.
2
How do I fix CVE-2017-8978?
To fix CVE-2017-8978, upgrade to the latest patched version of HPE IceWall Products.
3
What are the affected versions for CVE-2017-8978?
CVE-2017-8978 affects HPE IceWall Products version 4.0 including MCRP and MFA variants.
4
Can CVE-2017-8978 lead to unauthorized access?
Yes, CVE-2017-8978 can lead to unauthorized disclosure of information, potentially exposing sensitive data.
5
Is there a workaround for CVE-2017-8978?
There are no documented workarounds for CVE-2017-8978; applying the update is the recommended action.