PT-2024-35806 · Hewlett Packard · Hpe Insight Remote Support

Published

2024-11-22

·

Updated

2025-04-07

·

CVE-2024-53675

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions HPE Insight Remote Support (affected versions not specified)
Description An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XXE

Weakness Enumeration

Related Identifiers

BDU:2025-02210
CVE-2024-53675
ZDI-24-1638

Affected Products

Hpe Insight Remote Support