CVE-2017-5811
high · 7.5A remote code execution vulnerability in HPE Network Automation version 9.1x, 9.2x, 10.0x, 10.1x and 10.2x were found.
7.5
CVSS
17.0%
EPSS (exploit prob.)
97th
EPSS percentile
2018-02-15
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weaknesses
CWE-200
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| hp | network_automation | 9.10 |
| hp | network_automation | 9.20 |
| hp | network_automation | 9.22 |
| hp | network_automation | 9.22.01 |
| hp | network_automation | 9.22.02 |
| hp | network_automation | 10.00 |
| hp | network_automation | 10.00.01 |
| hp | network_automation | 10.00.02 |
| hp | network_automation | 10.10 |
| hp | network_automation | 10.11 |
| hp | network_automation | 10.21 |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/98331
- http://www.securitytracker.com/id/1038407
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03740en_us
- http://www.securityfocus.com/bid/98331
- http://www.securitytracker.com/id/1038407
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03740en_us
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-5811