PT-2024-17143 · Hewlett Packard · Hpe Insight Remote Support

Published

2024-11-26

·

Updated

2024-12-12

·

CVE-2024-11622

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions HPE Insight Remote Support (affected versions not specified)
Description An XML external entity injection (XXE) issue may allow remote users to disclose information in certain cases. This issue is related to XML external entity processing and can lead to information disclosure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XXE

Weakness Enumeration

Related Identifiers

CVE-2024-11622
ZDI-24-1635

Affected Products

Hpe Insight Remote Support