Show filters
33 Total Results
Displaying 11-20 of 33
Sort by:
Attacker Value
Unknown

CVE-2023-28088

Disclosure Date: April 25, 2023 (last updated October 08, 2023)
An HPE OneView appliance dump may expose SAN switch administrative credentials
Attacker Value
Unknown

CVE-2023-28087

Disclosure Date: April 25, 2023 (last updated October 08, 2023)
An HPE OneView appliance dump may expose OneView user accounts
Attacker Value
Unknown

CVE-2023-28086

Disclosure Date: April 25, 2023 (last updated October 08, 2023)
An HPE OneView appliance dump may expose proxy credential settings
Attacker Value
Unknown

CVE-2023-28091

Disclosure Date: April 14, 2023 (last updated October 08, 2023)
HPE OneView virtual appliance "Migrate server hardware" option may expose sensitive information in an HPE OneView support dump
Attacker Value
Unknown

CVE-2023-28085

Disclosure Date: April 14, 2023 (last updated October 08, 2023)
An HPE OneView Global Dashboard (OVGD) appliance dump may expose OVGD user account credentials
Attacker Value
Unknown

CVE-2022-37935

Disclosure Date: March 01, 2023 (last updated October 08, 2023)
HPE OneView for VMware vCenter, in certain circumstances, may disclose the “HPE OneView” Username and Password.
Attacker Value
Unknown

CVE-2022-37927

Disclosure Date: December 12, 2022 (last updated February 24, 2025)
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Hewlett Packard Enterprise HPE OneView Global Dashboard (OVGD).
Attacker Value
Unknown

CVE-2022-28625

Disclosure Date: August 31, 2022 (last updated February 24, 2025)
A local disclosure of sensitive information vulnerability was discovered in HPE OneView version(s): Prior to 7.0 or 6.60.01. A low privileged user could locally exploit this vulnerability to disclose sensitive information resulting in a complete loss of confidentiality, integrity, and availability. To exploit this vulnerability, HPE OneView must be configured with credential access to external repositories. HPE has provided a software update to resolve this vulnerability in HPE OneView.
Attacker Value
Unknown

CVE-2022-28616

Disclosure Date: May 17, 2022 (last updated February 23, 2025)
A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView.
Attacker Value
Unknown

CVE-2022-28617

Disclosure Date: May 17, 2022 (last updated October 07, 2023)
A remote bypass security restrictions vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView.