Lucene search

K
hpHP Product Security Response TeamHP:C06463166
HistoryOct 04, 2019 - 12:00 a.m.

HPSBGN03625 rev.1 - HP Touchpoint Analytics Execution of Arbitrary Code

2019-10-0400:00:00
HP Product Security Response Team
support.hp.com
14

0.0004 Low

EPSS

Percentile

5.1%

Potential Security Impact

Execution of arbitrary code.

Source: HP, HP Product Security Response Team (PSRT)

Reported by: Peleg Hadar (SafeBreach Labs)

VULNERABILITY SUMMARY

A potential security vulnerability has been identified with certain versions of HP Touchpoint Analytics prior to version 4.1.4.2827.

This vulnerability may allow a local attacker with administrative privileges to execute arbitrary code via an HP Touchpoint Analytics system service.

RESOLUTION

The below options highlight how to detect if a device is affected by this vulnerability and for remediation actions.

0.0004 Low

EPSS

Percentile

5.1%