HP
HP Operations Orchestration: vulnerabilidades y CVE
HP Operations Orchestration tiene 11 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE11
Últimos 12 meses0
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2018-6490 | Alta (7.5) | 2.6% | — | 2 mar 2018 | Denial of Service vulnerability in Micro Focus Operations Orchestration Software, version 10.x. This vulnerability could be remotely exploited to allow Denial of Service. |
| CVE-2016-8519 | Crítica (9.8) | 28% | — | 15 feb 2018 | A remote code execution vulnerability in HPE Operations Orchestration Community edition and Enterprise edition prior to v10.70 was found. |
| CVE-2017-8994 | Crítica (9.8) | 9.8% | — | 10 oct 2017 | A input validation vulnerability in HPE Operations Orchestration product all versions prior to 10.80, allows for the execution of code remotely. |
| CVE-2016-1997 | Crítica (9.8) | 6.7% | — | 22 mar 2016 | HPE Operations Orchestration 10.x before 10.51 and Operations Orchestration content before 1.7.0 allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons… |
| CVE-2015-5451 | Media (6.8) | 1.5% | — | 23 nov 2015 | Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration Central 10.x before 10.22.001 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. |
| CVE-2015-2109 | Alta (7.5) | 4.1% | — | 31 mar 2015 | Unspecified vulnerability in HP Operations Orchestration 10.x allows remote attackers to bypass authentication, and obtain sensitive information or modify data, via unknown vectors. |
| CVE-2015-2108 | Baja (3.5) | 1.9% | — | 31 mar 2015 | Unspecified vulnerability in Powershell Operations in HP Operations Orchestration 9.x and 10.x allows remote authenticated users to obtain sensitive information via unknown vectors. |
| CVE-2013-6192 | Media (6.8) | 0.97% | — | 17 dic 2013 | Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration before 9 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. |
| CVE-2013-6191 | Media (4.3) | 2.5% | — | 17 dic 2013 | Cross-site scripting (XSS) vulnerability in HP Operations Orchestration before 9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
| CVE-2012-3258 | Alta (10) | 9.9% | — | 19 sept 2012 | Unspecified vulnerability in HP Operations Orchestration 9.0 before 9.03 allows remote attackers to execute arbitrary code via unknown vectors. |
| CVE-2010-3985 | Media (4.3) | 2.0% | — | 26 oct 2010 | Cross-site scripting (XSS) vulnerability in HP Operations Orchestration before 9.0, when Internet Explorer 6.0 is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |