CVE-2024-53675

An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hpe:insight_remote_support:*:*:*:*:*:*:*:*

History

12 Dec 2024, 19:48

Type Values Removed Values Added
CPE cpe:2.3:a:hpe:insight_remote_support:*:*:*:*:*:*:*:*
CWE CWE-611
References () https://support.hpe.com/hpesc/public/docDisplay?docLocale=en_US&docId=hpesbgn04731en_us - () https://support.hpe.com/hpesc/public/docDisplay?docLocale=en_US&docId=hpesbgn04731en_us - Vendor Advisory
Summary
  • (es) Una vulnerabilidad de inyección de entidad externa XML (XXE) en HPE Insight Remote Support puede permitir que los usuarios remotos divulguen información en ciertos casos.
First Time Hpe
Hpe insight Remote Support

26 Nov 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-26 22:15

Updated : 2024-12-12 19:48


NVD link : CVE-2024-53675

Mitre link : CVE-2024-53675

CVE.ORG link : CVE-2024-53675


JSON object : View

Products Affected

hpe

  • insight_remote_support
CWE
CWE-91

XML Injection (aka Blind XPath Injection)

CWE-611

Improper Restriction of XML External Entity Reference