Known vulnerabilities in BladeSystem c-Class Virtual Connect Firmware
Vendor:
HPE
Software CPE:
cpe:2.3:h:hpe:bladesystem_c-class_virtual_connect_firmware:*:*:*:*:*:*:*:*
Website:
https://www.hpe.com
Total vulnerabilities:
5
Public exploits:
3
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU5373 - Exposure of sensitive information to an unauthorized actor CVE-2014-0160 |
CWE-200 | Critical | 4.10B, 4.20B | 25.01.2017 |
SB2014040101 SB2015092619 SB2014040801 and 28 more |
||
| #VU5214 - Use of a Broken or Risky Cryptographic Algorithm CVE-2014-3566 |
CWE-327 | Medium | 4.40 | 20.01.2017 |
SB2014101601 SB2014102102 SB2016022401 and 78 more |
||
| #VU5213 - Missing release of memory after effective lifetime CVE-2014-3567 |
CWE-401 | Medium | 4.40 | 20.01.2017 |
SB2014101601 SB2015101602 SB2015092611 and 20 more |
||
| #VU5212 - Missing release of memory after effective lifetime CVE-2014-3513 |
CWE-401 | Medium | 4.40 | 20.01.2017 |
SB2014101601 SB2015101602 SB2015092611 and 14 more |
||
| #VU2950 - Cryptographic Issues CVE-2014-0224 |
CWE-310 | Medium | 4.30 | 30.11.-0001 |
SB2014060501 SB2014060502 SB2014060503 and 42 more |