CVE-2018-7068

MEDIUM

HPE CentralView Fraud Risk Management < 6.1 - HTTP Request Smuggling via HOST Header

Title source: llm
STIX 2.1

Description

HPE has identified a remote HOST header attack vulnerability in HPE CentralView Fraud Risk Management earlier than version CV 6.1. This issue is resolved in HF16 for HPE CV 6.1 or subsequent version.

References (1)

Core 1

Scores

CVSS v3 6.1
EPSS 0.0097
EPSS Percentile 57.4%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-444
Status published
Products (1)
hp/centralview_fraud_risk_management < 6.1
Published Aug 06, 2018
Tracked Since Feb 18, 2026