« Volver al listado

CVE-2024-11856

Estado: AplazadaBaja (3.7)—

A security vulnerability in HPE IceWall products could be exploited remotely to cause Unauthorized Data Modification.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2024-11856",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2024-11856",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2024-12-02T22:12:30.891086Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "security-alert@hpe.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 3.7,
          "attackVector": "NETWORK",
          "baseSeverity": "LOW",
          "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N",
          "integrityImpact": "LOW",
          "userInteraction": "NONE",
          "attackComplexity": "HIGH",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 1.4,
        "exploitabilityScore": 2.2
      }
    ]
  },
  "affected": [
    {
      "source": "security-alert@hpe.com",
      "affectedData": [
        {
          "vendor": "Hewlett Packard Enterprise",
          "product": "HPE IceWall",
          "versions": [
            {
              "status": "affected",
              "version": "IceWall Gen11",
              "lessThan": "Patch Release 14",
              "versionType": "Patch"
            },
            {
              "status": "affected",
              "version": "IceWall SSO",
              "lessThan": "Patch Release 10",
              "versionType": "Patch"
            }
          ],
          "platforms": [
            "Linux",
            "Windows",
            "HP-UX"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2024-12-02T03:15:13.713",
  "references": [
    {
      "url": "https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbmu04762en_us&docLocale=en_US",
      "source": "security-alert@hpe.com"
    }
  ],
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security-alert@hpe.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-522"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "A security vulnerability in HPE IceWall products could be exploited remotely to cause Unauthorized Data Modification."
    },
    {
      "lang": "es",
      "value": "Una vulnerabilidad de seguridad en los productos HPE IceWall podría explotarse de forma remota para provocar una modificación de datos no autorizada."
    }
  ],
  "lastModified": "2026-06-17T06:58:35.643",
  "sourceIdentifier": "security-alert@hpe.com"
}