An authentication vulnerability in HPE BSM Platform Application Performance Management System Health product versions 9.26, 9.30 and 9.40, allows remote users to delete arbitrary files via servlet directory traversal.
2017-09-30T01:29:01.147
2025-04-20T01:37:25.860
Deferred
CVSSv3.0: 6.5 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:P/A:P
8.0
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | hp | bsm_platform_application_performance_management_system_health | 9.26 | Yes |
Application | hp | bsm_platform_application_performance_management_system_health | 9.30 | Yes |
Application | hp | bsm_platform_application_performance_management_system_health | 9.40 | Yes |