CVE-2016-4393
MEDIUMHPE System Management Homepage <7.6 - Info Disclosure
Title source: llmDescription
HPE System Management Homepage before v7.6 allows "remote authenticated" attackers to obtain sensitive information via unspecified vectors, related to an "XSS" issue.
Scores
CVSS v3
5.4
EPSS
0.0025
EPSS Percentile
48.1%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Classification
CWE
CWE-79
Status
published
Affected Products (2)
hp/system_management_homepage
< 7.5.5.0
HPE/HPE System Management Homepage before v7.6
< HPE System Management Homepage before v7.6
Timeline
Published
Oct 28, 2016
Tracked Since
Feb 18, 2026