CVE-2019-12000

HPE has found a potential Remote Access Restriction Bypass in HPE MSE Msg Gw application E-LTU prior to version 3.2 when HTTPS is used between the USSD and an external USSD service logic application. Update to version 3.2 and update the HTTPS configuration as described in the HPE MSE Messaging Gateway Configuration and Operations Guide.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hp:mse_msg_gw_application_e-ltu:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:22

Type Values Removed Values Added
References () https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbmu03979en_us - Vendor Advisory () https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbmu03979en_us - Vendor Advisory

Information

Published : 2020-07-17 22:15

Updated : 2024-11-21 04:22


NVD link : CVE-2019-12000

Mitre link : CVE-2019-12000

CVE.ORG link : CVE-2019-12000


JSON object : View

Products Affected

hp

  • mse_msg_gw_application_e-ltu
CWE
CWE-295

Improper Certificate Validation