There is a remote escalation of privilege possible for a malicious user that has a OneView account in OneView and Synergy Composer. HPE has provided updates to Oneview and Synergy Composer: Update to version 5.5 of OneView, Composer, or Composer2.
References
Link | Resource |
---|---|
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04047en_us | Vendor Advisory |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04047en_us | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:36
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04047en_us - Vendor Advisory |
Information
Published : 2020-11-06 15:15
Updated : 2024-11-21 05:36
NVD link : CVE-2020-7198
Mitre link : CVE-2020-7198
CVE.ORG link : CVE-2020-7198
JSON object : View
Products Affected
hp
- synergy_composer
- oneview
- synergy_composer_2
CWE