CVE-2007-4931
Estado: ModificadaBaja (2.1)—
HP System Management Homepage (SMH) for Windows, when used in conjunction with HP Version Control Agent or Version Control Repository Manager, leaves old OpenSSL software active after an OpenSSL update, which has unknown impact and attack vectors, probably related to previous vulnerabilities for OpenSSL.
CVSS
- Versión: 2.0
- Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N
- Puntuación base: 2.1
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.48%
- Percentil entre todas las CVEs puntuadas: 39
- Fecha de la puntuación: 7/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- NVD-CWE-Other
Referencias
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01164065
- http://osvdb.org/45941
- http://securitytracker.com/id?1018696
- http://www.securityfocus.com/bid/25675
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01164065
- http://osvdb.org/45941
- http://securitytracker.com/id?1018696
- http://www.securityfocus.com/bid/25675
JSON original (NVD)
Mostrar
{
"id": "CVE-2007-4931",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 2.1,
"accessVector": "LOCAL",
"vectorString": "AV:L/AC:L/Au:N/C:N/I:P/A:N",
"authentication": "NONE",
"integrityImpact": "PARTIAL",
"accessComplexity": "LOW",
"availabilityImpact": "NONE",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "LOW",
"obtainAllPrivilege": false,
"exploitabilityScore": 3.9,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2007-09-18T18:17:00.000",
"references": [
{
"url": "http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01164065",
"source": "cve@mitre.org"
},
{
"url": "http://osvdb.org/45941",
"source": "cve@mitre.org"
},
{
"url": "http://securitytracker.com/id?1018696",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/25675",
"source": "cve@mitre.org"
},
{
"url": "http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01164065",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://osvdb.org/45941",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://securitytracker.com/id?1018696",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/25675",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "HP System Management Homepage (SMH) for Windows, when used in conjunction with HP Version Control Agent or Version Control Repository Manager, leaves old OpenSSL software active after an OpenSSL update, which has unknown impact and attack vectors, probably related to previous vulnerabilities for OpenSSL."
},
{
"lang": "es",
"value": "HP System Management Homepage (SMH) para Windows, cuando se usa en conjunto con HP Version Control Agent o Version Control REpository Manager, deja el software OpenSSL activo después de una actualización OpenSSL, lo cual tiene impacto y vectores de ataque desconocidos, probablemente relacionados con vulnerabilidades previas para OpenSSL."
}
],
"lastModified": "2026-06-16T22:45:06.847",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.0.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AD9A9442-18B7-4858-AB3A-19FE272A5C61"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.0.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "90042282-9151-4D8E-8093-D85E57BD332C"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.0.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D3EF92B4-AAC3-4957-9D8F-1796C2045962"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D44CEFC1-CE95-4549-A981-C3F259075B77"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CFA42455-F9B9-49BD-BAFA-4A02C554ECE9"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "6426924C-AA5C-4C93-AB8B-9314CD010139"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A6E5C789-9827-47DF-A47C-454DF7687E59"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.3.132:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D85F0390-B076-4B54-9E4E-67472FF3759E"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "29FE29FC-AD24-4C89-9AAC-9D49C54A5CC9"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "20EBB25A-A1DE-4943-9EE5-0FCF21A55666"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B61485E4-6EC1-4886-AB47-F5BC8E72A08A"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2E354FF4-5CDD-4B79-B56C-2C774B235D78"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B3DACC6F-DCE8-4890-BE47-488CB7B2DF77"
},
{
"criteria": "cpe:2.3:a:hp:system_management_homepage:2.1.9:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8AFAF26C-7BFE-479E-880C-B13E78780625"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}