Skip to main content

Vendor/product archive

hp / network_automation CVEs

Beta · best-effort

17 CVEs tagged to hp / network_automation6 Critical, 6 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2017-5814

Published Feb 15, 2018

A remote sql injection authentication bypass in HPE Network Automation version 9.1x, 9.2x, 10.0x, 10.1x and 10.2x were found.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-5813

Published Feb 15, 2018

A remote unauthenticated access vulnerability in HPE Network Automation version 9.1x, 9.2x, 10.0x, 10.1x and 10.2x were found.

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-5812

Published Feb 15, 2018

A remote sql information disclosure vulnerability in HPE Network Automation version 9.1x, 9.2x, 10.0x, 10.1x and 10.2x were found.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-5811

Published Feb 15, 2018

A remote code execution vulnerability in HPE Network Automation version 9.1x, 9.2x, 10.0x, 10.1x and 10.2x were found.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-5810

Published Feb 15, 2018

A remote sql injection vulnerability in HPE Network Automation version 9.1x, 9.2x, 10.0x, 10.1x and 10.2x were found.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-8511

Published Feb 15, 2018

A Remote Code Execution vulnerability in HPE Network Automation using RPCServlet and Java Deserialization version v9.1x, v9.2x, v10.00, v10.00.01, v10.00.02, v10.10, v10.11, v10.1…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-4386

Published Sep 29, 2016

HPE Network Automation Software 10.10 allows local users to write to arbitrary files via unspecified vectors.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-4385

Published Sep 29, 2016

The RMI service in HP Network Automation Software 9.1x, 9.2x, 10.0x before 10.00.02.01, and 10.1x before 10.11.00.01 allows remote attackers to execute arbitrary commands via a cr…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2016-1989

Published Mar 15, 2016

HPE Network Automation 9.22 through 9.22.02 and 10.x before 10.00.02 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, a d…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-1988

Published Mar 15, 2016

HPE Network Automation 9.22 through 9.22.02 and 10.x before 10.00.02 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, a d…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-2646

Published Oct 10, 2014

Unspecified vulnerability in HP Network Automation 9.10 and 9.20 allows local users to bypass intended access restrictions via unknown vectors.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2011-4790

Published Feb 2, 2012

Unspecified vulnerability in HP Network Automation 7.5x, 7.6x, 9.0, and 9.10 allows remote attackers to execute arbitrary code via unknown vectors.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-2403

Published Aug 1, 2011

SQL injection vulnerability in HP Network Automation 7.2x, 7.5x, 7.6x, 9.0, and 9.10 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2402

Published Aug 1, 2011

Cross-site scripting (XSS) vulnerability in HP Network Automation 7.2x, 7.5x, 7.6x, 9.0, and 9.10 allows remote attackers to inject arbitrary web script or HTML via unspecified ve…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-1725

Published Apr 27, 2011

Unspecified vulnerability in HP Network Automation 7.2x, 7.5x, 7.6x, 9.0, and 9.10 allows remote attackers to obtain sensitive information via unknown vectors.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-17 of 17 CVEsPage 1 of 1