First published: Tue May 17 2022(Updated: )
A remote cross-site scripting (xss) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP OneView | <7.0 |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn04278en_us
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-23706 is medium (6.1).
The CVE-2022-23706 vulnerability affects HPE OneView versions prior to 7.0.
Yes, HPE has provided a software update to resolve CVE-2022-23706 in HPE OneView.
The Common Weakness Enumeration (CWE) of CVE-2022-23706 is CWE-79 (Cross-Site Scripting).
You can find more information about CVE-2022-23706 at the following link: [CVE-2022-23706](https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn04278en_us).