First published: Tue Nov 26 2024(Updated: )
An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hewlett Packard Enterprise Insight Remote Support | <7.14.0.629 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-53675 is classified as a high-severity XML external entity injection vulnerability.
To remediate CVE-2024-53675, upgrade HPE Insight Remote Support to version 7.14.0.629 or later.
CVE-2024-53675 affects HPE Insight Remote Support versions prior to 7.14.0.629.
CVE-2024-53675 can allow remote users to disclose sensitive information through XML external entity injection.
There is currently no publicly available information indicating that CVE-2024-53675 is being actively exploited.