Home
HIGH: 7.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:LDefault status
unaffected
Any version before 7.14.0.629
affected
Description
An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
Problem types
CWE-91 XML Injection (aka Blind XPath Injection)
Product status
Any version before 7.14.0.629
References
support.hpe.com/...y?docLocale=en_US&docId=hpesbgn04731en_us