First published: Thu Apr 30 2020(Updated: )
A security vulnerability in HPE Smart Update Manager (SUM) prior to version 8.5.6 could allow remote unauthorized access. Hewlett Packard Enterprise has provided a software update to resolve this vulnerability in HPE Smart Update Manager (SUM) prior to 8.5.6. Please visit the HPE Support Center at https://support.hpe.com/hpesc/public/home to download the latest version of HPE Smart Update Manager (SUM). Download the latest version of HPE Smart Update Manager (SUM) or download the latest Service Pack For ProLiant (SPP).
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HPE Smart Update Manager | <8.5.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-7136 is classified as a critical vulnerability due to its potential for remote unauthorized access.
To fix CVE-2020-7136, upgrade to HPE Smart Update Manager version 8.5.6 or later.
CVE-2020-7136 affects HPE Smart Update Manager versions prior to 8.5.6.
Organizations using HPE Smart Update Manager prior to version 8.5.6 are at risk from CVE-2020-7136.
Yes, a software update is available to resolve CVE-2020-7136 in HPE Smart Update Manager.