PT-2018-17584 · Hewlett Packard · Hpe Network Automation+1

Published

2018-05-22

·

Updated

2023-03-03

·

CVE-2018-6493

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HP Network Operations Management Ultimate versions 2017.07 through 2018.02 HP Network Automation versions 10.00 through 10.50
Description The issue allows for remote SQL injection, which could be exploited to gain unauthorized access.
Recommendations For HP Network Operations Management Ultimate versions 2017.07 through 2018.02, update to a version that includes a fix for this issue. For HP Network Automation versions 10.00 through 10.50, update to a version that includes a fix for this issue.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2018-6493

Affected Products

Hpe Network Automation
Hp Network Operations Management Ultimate