CVE-2018-18593

Remote Directory Traversal and Remote Disclosure of Privileged Information in UCMDB Configuration Management Service, version 10.22, 10.22 CUP1, 10.22 CUP2, 10.22 CUP3, 10.22 CUP4, 10.22 CUP5, 10.22 CUP6, 10.22 CUP7, 10.33, 10.33 CUP1, 10.33 CUP2, 10.33 CUP3, 2018.02, 2018.05, 2018.08, 2018.11. The vulnerabilities could allow Remote Directory Traversal and Remote Disclosure of Privileged Information
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hp:ucmdb_configuration_manager:10.22:*:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.22:cup1:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.22:cup2:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.22:cup3:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.22:cup4:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.22:cup5:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.22:cup6:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.22:cup7:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.33:*:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.33:cup1:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.33:cup2:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:10.33:cup3:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:2018.02:*:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:2018.05:*:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:2018.08:*:*:*:*:*:*:*
cpe:2.3:a:hp:ucmdb_configuration_manager:2018.11:*:*:*:*:*:*:*

History

07 Nov 2023, 02:55

Type Values Removed Values Added
References (MISC) https://softwaresupport.softwaregrp.com/doc/KM03309650 - Vendor Advisory () https://softwaresupport.softwaregrp.com/doc/KM03309650 -
References (BID) http://www.securityfocus.com/bid/106374 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/106374 -

Information

Published : 2018-12-31 15:29

Updated : 2024-02-28 16:48


NVD link : CVE-2018-18593

Mitre link : CVE-2018-18593

CVE.ORG link : CVE-2018-18593


JSON object : View

Products Affected

hp

  • ucmdb_configuration_manager
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')