hpe

187 tracked vulnerabilities.

CVE-2023-28084 MEDIUM
HPE OneView < 6.60.04 and OneView Global Dashboard < 2.72 - Insufficiently Protected Credentials in Appliance Dumps
Apr 25, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-28085 MEDIUM
HPE OneView Global Dashboard - Info Disclosure
Apr 14, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-1168 HIGH
ArubaOS-CX 10.06.0000-10.06.0240 - Authenticated Remote Code Execution in Network Analytics Engine
Mar 22, 2023
CVSS 7.2
EPSS 0.01
CVE-2022-37940 MEDIUM
HPE FlexFabric 5700 Switch Series < R2432P61 - URL Redirection via Host Header Injection
Mar 22, 2023
CVSS 5.3
EPSS 0.00
CVE-2022-37939 LOW
HPE Superdome Flex <3.65.8, Superdome Flex 280 <1.45.8 - Info Discl...
Mar 10, 2023
CVSS 2.3
EPSS 0.00
CVE-2022-37938 CRITICAL
HPE Serviceguard for Linux < a.12.80.05 - Unauthenticated Server-Side Request Forgery
Mar 01, 2023
CVSS 9.8
EPSS 0.00
CVE-2022-37937 CRITICAL
HPE Serviceguard for Linux < a.12.80.05 - Unauthenticated Out-of-bounds Write
Mar 01, 2023
CVSS 9.8
EPSS 0.01
CVE-2022-37936 CRITICAL
HPE Serviceguard for Linux < a.12.80.05 - Unauthenticated Remote Code Execution via Java Deserialization
Mar 01, 2023
CVSS 9.8
EPSS 0.02
CVE-2022-37934 MEDIUM
HPE OfficeConnect 1820 and 1850 Switch Series - Remote Path Traversal
Jan 05, 2023
CVSS 6.8
EPSS 0.01
CVE-2022-37933 HIGH
HPE Superdome Flex and Superdome Flex 280 Firmware - Local Unauthorized Data Injection
Jan 05, 2023
CVSS 7.3
EPSS 0.00
CVE-2022-37932 HIGH NUCLEI
HPE OfficeConnect 1820, 1850, and 1920S - Authentication Bypass
Dec 12, 2022
CVSS 8.8
EPSS 0.72
CVE-2022-37930 MEDIUM
HPE Nimble Storage Hybrid Flash Arrays and Secondary Flash Arrays < 5.2.1.900 - Local Sensitive Information Exposure
Dec 12, 2022
CVSS 6.7
EPSS 0.00
CVE-2022-37929 MEDIUM
HPE Nimble Storage Arrays < 5.2.1.900 - Privilege Management Issue
Dec 12, 2022
CVSS 6.7
EPSS 0.00
CVE-2022-37928 HIGH
HPE Nimble Storage Hybrid/Secondary Flash Arrays < 5.2.1.900 Data Authenticity Verification Issue
Dec 12, 2022
CVSS 8.0
EPSS 0.00
CVE-2022-37927 MEDIUM
HPE OneView Global Dashboard < 2.7 - Open Redirect
Dec 12, 2022
CVSS 6.1
EPSS 0.00
CVE-2022-28640 HIGH
HPE iLO 5 2.71 - Local-Adjacent Arbitrary Code Execution
Sep 20, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-28639 HIGH
HPE Integrated Lights-Out 5 Firmware < 2.72 - Denial of Service and Arbitrary Code Execution
Sep 20, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-28638 HIGH
HPE iLO 5 <2.71 - Info Disclosure, RCE
Sep 20, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-28637 HIGH
HPE Integrated Lights-Out 5 Firmware < 2.72 - Local Denial of Service and Arbitrary Code Execution
Sep 20, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-28636 HIGH
HPE Integrated Lights-Out 5 Firmware < 2.71 - Local Arbitrary Code Execution and Denial of Service
Aug 12, 2022
CVSS 7.4
EPSS 0.00
CVE-2022-28635 HIGH
HPE Integrated Lights-Out 5 Firmware < 2.71 - Local Arbitrary Code Execution and Denial of Service
Aug 12, 2022
CVSS 7.4
EPSS 0.00
CVE-2022-28634 MEDIUM
HPE iLO 5 <2.71 - Privileged Local Arbitrary Code Execution
Aug 12, 2022
CVSS 6.7
EPSS 0.00
CVE-2022-28633 HIGH
HPE iLO 5 < 2.71 - Unauthenticated Info Disclosure & Data Modification
Aug 12, 2022
CVSS 7.3
EPSS 0.00
CVE-2022-28632 HIGH
HPE Integrated Lights-Out 5 Firmware < 2.71 - Unauthenticated Remote Code Execution and Denial of Service
Aug 12, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-28631 HIGH
HPE Integrated Lights-Out 5 Firmware < 2.71 - Unauthenticated Arbitrary Code Execution and Denial of Service
Aug 12, 2022
CVSS 8.8
EPSS 0.00