Information disclosure in RESTful Interface Tool - CVE-2016-2023
Published: May 30, 2016 / Updated: August 9, 2020
Vulnerability identifier: #VU40256
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-2023
CWE-ID: CWE-200
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local authenticated user to gain access to sensitive information.
HPE RESTful Interface Tool 1.40 allows local users to obtain sensitive information via unspecified vectors.
Affected software
RESTful Interface Tool
How to mitigate CVE-2016-2023
Install update from vendor's website.