Denial of service in HPE iMC PLAT - CVE-2010-1632

 

Denial of service in HPE iMC PLAT - CVE-2010-1632

Published: September 27, 2016 / Updated: October 7, 2016


Vulnerability identifier: #VU802
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2010-1632
CWE-ID: CWE-284
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor: HPE
Affected software:
HPE iMC PLAT

Detailed vulnerability description

The vulnerability allows a remote unauthenticated user to access potentially sensitive information and cause DoS conditions.
The weakness exists due to access control error and lets attackers to view important data and cause the target system deny.
Successful exploitation of the vulnerability may result in information disclosure and denial of service on the vulnerable system.

How to mitigate CVE-2010-1632

Update to version 7.2.

Sources