CVE-2020-7136
Last modified
CVE-2020-7136 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. A security vulnerability in HPE Smart Update Manager (SUM) prior to version 8.5.6 could allow remote unauthorized access. Hewlett Packard Enterprise has provided a software update to resolve this vulnerability in HPE Smart Update Manager (SUM) prior to 8.5.6. EPSS estimates a 79.52% chance of exploitation in the next 30 days.
Description
A security vulnerability in HPE Smart Update Manager (SUM) prior to version 8.5.6 could allow remote unauthorized access. Hewlett Packard Enterprise has provided a software update to resolve this vulnerability in HPE Smart Update Manager (SUM) prior to 8.5.6. Please visit the HPE Support Center at https://support.hpe.com/hpesc/public/home to download the latest version of HPE Smart Update Manager (SUM). Download the latest version of HPE Smart Update Manager (SUM) or download the latest Service Pack For ProLiant (SPP).
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hpe | Smart Update Manager | < 8.5.6 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-7136?
How severe is CVE-2020-7136?
How do I fix CVE-2020-7136?
Are you affected by CVE-2020-7136?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
