CVE-2017-14349

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
30/09/2017
Last modified:
20/04/2025

Description

An authentication vulnerability in HPE SiteScope product versions 11.2x and 11.3x, allows read-only accounts to view all SiteScope interfaces and monitors, potentially exposing sensitive data.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hp:sitescope:11.20:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.21:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.22:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.23:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.24:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.24.391:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.30:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.30.521:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.31:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.32:*:*:*:*:*:*:*
cpe:2.3:a:hp:sitescope:11.33:*:*:*:*:*:*:*