PT-2024-35806 · Hewlett Packard · Hpe Insight Remote Support

CVE-2024-53675

·

Published

2024-11-22

·

Updated

2025-04-07

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions HPE Insight Remote Support (affected versions not specified)
Description An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XXE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-02210
CVE-2024-53675
ZDI-24-1638

Affected Products

Hpe Insight Remote Support