CVE-2017-8989: Critical severity HP IceWall SSO vulnerability
Published Aug 6, 2018
·Updated
A security vulnerability in HPE IceWall SSO Dfw 10.0 and 11.0 on RHEL, HP-UX, and Windows could be exploited remotely to allow URL Redirection.
Affected Software
5 affected components
HP IceWall SSO=10.0
HP IceWall SSO=11.0
HP HP-UX
Microsoft Windows
redhat Enterprise Linux
Event History
Aug 6, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-8989?
CVE-2017-8989 has been rated as a medium severity vulnerability due to the potential for remote exploitation.
2
How do I fix CVE-2017-8989?
To resolve CVE-2017-8989, you should update to the latest version of HPE IceWall SSO available from HPE.
3
Which versions of HPE IceWall SSO are affected by CVE-2017-8989?
CVE-2017-8989 affects HPE IceWall SSO versions 10.0 and 11.0.
4
Can CVE-2017-8989 be exploited on non-vulnerable operating systems?
CVE-2017-8989 specifically targets HPE IceWall SSO and can be exploited on systems running vulnerable versions regardless of the underlying operating system.
5
Is CVE-2017-8989 a local or remote vulnerability?
CVE-2017-8989 is categorized as a remote vulnerability, as it can be exploited over a network without local access.