CVE-2018-6493: MFSBGN03806 rev.1 - HP Network Automation Software, Network Operations Management (NOM) Suite, Multiple Vulnerabilities

Published May 22, 2018
·
Updated

SQL Injection in HP Network Operations Management Ultimate, version 2017.07, 2017.11, 2018.02 and in Network Automation, version 10.00, 10.10, 10.11, 10.20, 10.30, 10.40, 10.50. This vulnerability could be remotely exploited to allow Remote SQL Injection.

Affected Software

10 affected components
HP Network Operations Management Ultimate=2017.07
HP Network Operations Management Ultimate=2017.11
HP Network Operations Management Ultimate=2018.02
Opsware Network Automation System=10.00
Opsware Network Automation System=10.10
Opsware Network Automation System=10.11
Opsware Network Automation System=10.20
Opsware Network Automation System=10.30
Opsware Network Automation System=10.40
Opsware Network Automation System=10.50

Event History

May 22, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:29 PM
DescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2018-6493?

CVE-2018-6493 is considered a high severity vulnerability due to the potential for remote SQL injection.

2

How do I fix CVE-2018-6493?

To fix CVE-2018-6493, it is recommended to update affected HP Network Operations Management Ultimate and HP Network Automation versions to the latest patched versions.

3

What software is affected by CVE-2018-6493?

CVE-2018-6493 affects HP Network Operations Management Ultimate versions 2017.07, 2017.11, and 2018.02, as well as HP Network Automation versions 10.00 through 10.50.

4

Can CVE-2018-6493 be exploited remotely?

Yes, CVE-2018-6493 can be remotely exploited, allowing attackers to execute SQL injection attacks on the affected systems.

5

What are the consequences of CVE-2018-6493 exploitation?

Exploitation of CVE-2018-6493 can lead to unauthorized access to the database and exposure of sensitive data.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203