Lucene search

K
cveHpCVE-2022-46357
HistoryJan 30, 2023 - 8:15 a.m.

CVE-2022-46357

2023-01-3008:15:08
hp
web.nvd.nist.gov
23
hp security manager
cve-2022-46357
vulnerability
privilege escalation
code execution
information disclosure
nvd

CVSS3

8.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

AI Score

8.9

Confidence

High

EPSS

0

Percentile

13.2%

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.

Affected configurations

Nvd
Node
hpsecurity_managerRange<3.9
VendorProductVersionCPE
hpsecurity_manager*cpe:2.3:a:hp:security_manager:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "versions": [
      {
        "version": "See HP Security Bulletin reference for affected versions.",
        "status": "affected"
      }
    ],
    "product": "HP Security Manager",
    "vendor": "HP Inc."
  }
]

CVSS3

8.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

AI Score

8.9

Confidence

High

EPSS

0

Percentile

13.2%

Related for CVE-2022-46357