First published: Tue May 17 2022(Updated: )
A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP OneView | <7.0 |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn04278en_us
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-28616.
The severity level of CVE-2022-28616 is critical.
The versions prior to 7.0 of HPE OneView are affected by CVE-2022-28616.
You can fix the CVE-2022-28616 vulnerability by applying the software update provided by HPE for HPE OneView.
You can find more information about CVE-2022-28616 in the reference provided by HPE: [Link](https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn04278en_us).