Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.8
CVE-2016-2003
HPE P9000 Command View Advanced Edition Software (CVAE) 7.x and 8.x before 8.4.0-00 and XP7 CVAE 7.x and 8.x before 8.4.0-00 allow remote attackers t…
P9000 Command View Advanced Edition Software
Patch available
HIGH 7.4
CVE-2016-2001
HPE Universal CMDB Foundation 10.0, 10.01, 10.10, 10.11, and 10.20 allows remote attackers to obtain sensitive information or conduct URL redirection…
Universal Cmbd Foundation
Patch available
CRITICAL 9.8
CVE-2016-2000
HPE Asset Manager 9.40, 9.41, and 9.50 and Asset Manager CloudSystem Chargeback 9.40 allow remote attackers to execute arbitrary commands via a craft…
Asset Manager
Patch available
CRITICAL 9.8
CVE-2016-1998EPSS 7%
HPE Service Manager (SM) 9.3x before 9.35 P4 and 9.4x before 9.41.P2 allows remote attackers to execute arbitrary commands via a crafted serialized J…
Service Manager
Patch available
CRITICAL 9.8
CVE-2016-1997EPSS 7%
HPE Operations Orchestration 10.x before 10.51 and Operations Orchestration content before 1.7.0 allow remote attackers to execute arbitrary commands…
Operations Orchestration
after 1.5.3
CRITICAL 9.8
CVE-2016-2245EPSS 6%
HP Support Assistant before 8.1.52.1 allows remote attackers to bypass authentication via unspecified vectors.
Support Assistant
after 8.1.40.3
HIGH 7.7
CVE-2016-1996
HPE System Management Homepage before 7.5.4 allows local users to obtain sensitive information or modify data via unspecified vectors.
System Management Homepage
after 7.5.3.1
CRITICAL 9.8
CVE-2016-1995EPSS 10%
HPE System Management Homepage before 7.5.4 allows remote attackers to execute arbitrary code via unspecified vectors.
System Management Homepage
after 7.5.3.1
MEDIUM 6.5
CVE-2016-1994
HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information via unspecified vectors.
System Management Homepage
after 7.5.3.1
HIGH 8.1
CVE-2016-1993
HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.
System Management Homepage
after 7.5.3.1
MEDIUM 6.5
CVE-2016-1992
HPE ArcSight ESM before 6.8c, and ArcSight ESM Express before 6.9.1, allows remote authenticated users to obtain sensitive information via unspecifie…
Enterprise Security Manager
after 6.9.0
CRITICAL 9.8
CVE-2016-1989EPSS 11%
HPE Network Automation 9.22 through 9.22.02 and 10.x before 10.00.02 allows remote attackers to execute arbitrary code or obtain sensitive informatio…
Network Automation
Patch available
CRITICAL 9.8
CVE-2016-1988EPSS 11%
HPE Network Automation 9.22 through 9.22.02 and 10.x before 10.00.02 allows remote attackers to execute arbitrary code or obtain sensitive informatio…
Network Automation
Patch available
MEDIUM 5.9
CVE-2016-2244
HP LaserJet printers and MFPs and OfficeJet Enterprise printers with firmware before 3.7.01 allow remote attackers to obtain sensitive information vi…
Futuresmart Firmware
after 3.7
HIGH 7.9
CVE-2016-2243
Sure Start on HP Commercial PCs 2015 allows local users to cause a denial of service (BIOS recovery failure) by leveraging administrative access.
700 Series Firmware
Mitigation only
MEDIUM 5.9
CVE-2016-1987
HPE IPFilter A.11.31.18.21 on HP-UX, when a certain keep-state configuration is enabled, allows remote attackers to cause a denial of service via uns…
Hp Ux Ipfilter
Mitigation only
CRITICAL 9.8
CVE-2016-1986
HP Continuous Delivery Automation (CDA) 1.30 allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to t…
Continuous Delivery Automation
Patch available
CRITICAL 10.0
CVE-2016-1985EPSS 7%
HPE Operations Manager 8.x and 9.0 on Windows allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to …
Operations Manager
Patch available
MEDIUM 6.3
CVE-2015-6864
HPE ArcSight Logger before 6.1P1 allows remote authenticated users to execute arbitrary code via unspecified input to the (1) Intellicus or (2) clien…
Arcsight Logger
after 6.1
HIGH 7.3
CVE-2015-6863
HPE ArcSight Logger before 6.1P1 allows remote attackers to execute arbitrary code via unspecified input to the (1) Intellicus or (2) client-certific…
Arcsight Logger
after 6.1
HIGH 8.4
CVE-2015-6862
HPE UCMDB Browser before 4.02 allows remote attackers to obtain sensitive information or bypass intended access restrictions via unspecified vectors.
Ucmdb Browser
Patch available
HIGH 8.4
CVE-2015-6860
HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unspecified vectors, a different …
Network Switch Software
after 15.18.0
HIGH 7.8
CVE-2015-6859
HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unspecified vectors, a different …
Network Switch Software
after 15.18.0
MEDIUM 5.4
CVE-2015-5447
Cross-site scripting (XSS) vulnerability in HP StoreOnce Backup system software before 3.13.1 allows remote authenticated users to inject arbitrary w…
Storeonce Backup System Software
after 3.13.0
HIGH 7.5
CVE-2015-5446
HP StoreOnce Backup system software before 3.13.1 allows remote attackers to execute arbitrary code via unspecified vectors.
Storeonce Backup System Software
after 3.13.0
HIGH 8.8
CVE-2015-5445
Cross-site request forgery (CSRF) vulnerability in HP StoreOnce Backup system software before 3.13.1 allows remote authenticated users to hijack the …
Storeonce Backup System Software
after 3.13.0
MEDIUM 6.5
CVE-2015-5434
HPE Networking Products, originally branded as Comware 5, Comware 7, H3C, or HP, allow remote attackers to bypass intended access restrictions or cau…
Jg786a Hp Flexfabric 12500 4 Port 100gbe Cfp Fd
Patch available
HIGH 7.2
CVE-2015-6857
Unspecified vulnerability in Virtual Table Server (VTS) in HP LoadRunner 11.52, 12.00, 12.01, 12.02, and 12.50 allows remote attackers to execute arb…
Loadrunner
Mitigation only
MEDIUM 6.8
CVE-2015-5451
Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration Central 10.x before 10.22.001 allows remote attackers to hijack the au…
Operations Orchestration
after 10.22.0
HIGH 7.2
CVE-2015-6030
HP ArcSight Logger 6.0.0.7307.1, ArcSight Command Center 6.8.0.1896.0, and ArcSight Connector Appliance 6.4.0.6881.3 use the root account to execute …
Arcsight Connector Appliance
after 7.1.3