CVE-2021-26585: Medium severity hpe oneview global dashboard vulnerability
Published Jun 24, 2021
·Updated
A potential vulnerability has been identified in HPE OneView Global Dashboard release 2.31 which could lead to a local disclosure of privileged information. HPE has provided an update to OneView Global Dashboard. The issue is resolved in 2.32.
Affected Software
1 affected component
HPE OneView Global Dashboard=2.31
Event History
Jun 24, 2021
CVE Published
via MITRE·11:02 AM
Data Sourced
via MITRE·11:02 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of the HPE OneView Global Dashboard vulnerability?
The vulnerability ID is CVE-2021-26585.
2
What is the severity rating of CVE-2021-26585?
CVE-2021-26585 has a severity rating of medium with a CVSS score of 5.5.
3
How can the HPE OneView Global Dashboard vulnerability be exploited?
The vulnerability can be exploited locally to disclose privileged information.
4
Has HPE provided a fix for the HPE OneView Global Dashboard vulnerability?
Yes, HPE has provided an update to OneView Global Dashboard version 2.32 which resolves the vulnerability.
5
Where can I find more information about the HPE OneView Global Dashboard vulnerability?
You can find more information about the vulnerability in the HPE support article: https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04162en_us