CVE-2016-4394
MEDIUMHPE System Management Homepage <7.6 - Info Disclosure
Title source: llmDescription
HPE System Management Homepage before v7.6 allows remote attackers to obtain sensitive information via unspecified vectors, related to an "HSTS" issue.
Scores
CVSS v3
6.5
EPSS
0.0049
EPSS Percentile
65.0%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Classification
CWE
CWE-254
Status
published
Affected Products (2)
hp/system_management_homepage
< 7.5.5.0
HPE/HPE System Management Homepage before v7.6
< HPE System Management Homepage before v7.6
Timeline
Published
Oct 28, 2016
Tracked Since
Feb 18, 2026