« Volver al listado

CVE-2019-5394

Estado: ModificadaMedia (5.1)—

The HPE Nonstop Maintenance Entity family of products are vulnerable to local disclosure of information, such as system layout and configuration.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (3)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2019-5394",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 4.9,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:H/Au:M/C:P/I:P/A:C",
          "authentication": "MULTIPLE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "HIGH",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 8.5,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 1.2,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": true
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 5.1,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:H",
          "integrityImpact": "LOW",
          "userInteraction": "REQUIRED",
          "attackComplexity": "HIGH",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "LOW"
        },
        "impactScore": 4.7,
        "exploitabilityScore": 0.3
      }
    ]
  },
  "affected": [
    {
      "source": "security-alert@hpe.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "HPE NonStop Maintanence Entity",
          "versions": [
            {
              "status": "affected",
              "version": "Integrated Maintenance Entity T1805 T1805A01 through T1805A01^AAG and Maintenance Entity T2805 T2805A01 through T2805A01^AAT and Blade Maintenance Entity FW T4805 T4805A01 through T4805A01^AAX"
            }
          ]
        }
      ]
    }
  ],
  "published": "2019-06-05T18:29:01.137",
  "references": [
    {
      "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbns03925en_us",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security-alert@hpe.com"
    },
    {
      "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbns03925en_us",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The HPE Nonstop Maintenance Entity family of products are vulnerable to local disclosure of information, such as system layout and configuration."
    },
    {
      "lang": "es",
      "value": "La familia de productos HPE Nonstop Maintenance Entity es vulnerable a la divulgación de información local, tales como el diseño y la configuración del sistema."
    }
  ],
  "lastModified": "2026-06-17T02:37:36.933",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:hp:blade_maintenance_entity:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F9733837-47A3-4D07-AAED-1ADB522D96CE",
              "versionEndIncluding": "t4805a01\\^aax",
              "versionStartIncluding": "t4805a01"
            },
            {
              "criteria": "cpe:2.3:a:hp:integrated_maintenance_entity:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "82578489-79EA-455A-BAA4-9DF3B2E5CAF7",
              "versionEndIncluding": "t1805a01\\^aag",
              "versionStartIncluding": "t1805a01"
            },
            {
              "criteria": "cpe:2.3:a:hp:maintenance_entity:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "51E1B281-6279-4EA6-B085-A2A397E47269",
              "versionEndIncluding": "t2805a01\\^aat",
              "versionStartIncluding": "t2805a01"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security-alert@hpe.com"
}