CVE-2018-7111
Last modified
CVE-2018-7111 is a vulnerability of currently unknown severity. A remote unauthorized access vulnerability was identified in HPE UIoT versions 1.5, 1.4.0, 1.4.1, 1.4.2, 1.2.4.2. Specifically, there is a malfunction identified in some section of the DSM portal and some DSM APIs. EPSS estimates a 5.27% chance of exploitation in the next 30 days.
Description
A remote unauthorized access vulnerability was identified in HPE UIoT versions 1.5, 1.4.0, 1.4.1, 1.4.2, 1.2.4.2. Specifically, there is a malfunction identified in some section of the DSM portal and some DSM APIs. The impact of the malfunction is that the info can be changed by other users.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hp | Universal Internet Of Things | 1.2.4.2 |
| Hp | Universal Internet Of Things | 1.4.0 |
| Hp | Universal Internet Of Things | 1.4.1 |
| Hp | Universal Internet Of Things | 1.4.2 |
| Hp | Universal Internet Of Things | 1.5 |
References
- http://www.securityfocus.com/bid/105704Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/151691Third Party Advisory
- http://www.securityfocus.com/bid/105704Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-7111?
How severe is CVE-2018-7111?
How do I fix CVE-2018-7111?
Are you affected by CVE-2018-7111?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
