CVE-2014-7883

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
15/02/2015
Last modified:
12/04/2025

Description

HP Universal CMDB (UCMDB) Probe 9.05, 10.01, and 10.11 enables the HTTP TRACE method, which allows remote attackers to obtain sensitive information by reading the headers of a response.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hp:universal_configuration_management_database:9.05:*:*:*:*:*:*:*
cpe:2.3:a:hp:universal_configuration_management_database:10.01:*:*:*:*:*:*:*
cpe:2.3:a:hp:universal_configuration_management_database:10.11:*:*:*:*:*:*:*