Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-22267


Idelji Web ViewPoint Suite, as used in conjunction with HPE NonStop, allows a remote replay attack for T0320L01^ABP through T0320L01^ABZ, T0952L01^AAH through T0952L01^AAR, T0986L01 through T0986L01^AAF, T0665L01^AAP, and T0662L01^AAP (L) and T0320H01^ABO through T0320H01^ABY, T0952H01^AAG through T0952H01^AAQ, T0986H01 through T0986H01^AAE, T0665H01^AAO, and T0662H01^AAO (J and H).


Published

2021-02-09T19:15:13.773

Last Modified

2024-11-21T05:49:49.310

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.9 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:N/A:N

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

8.6

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-294

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application hpe web_viewpoint ≤ 06.23.01 Yes
Application hpe web_viewpoint ≤ 19.08.00 Yes
Application hpe web_viewpoint ≤ t0320h01\^acc Yes
Application hpe web_viewpoint ≤ t0952h01\^aaw Yes
Application hpe web_viewpoint ≤ t0952l01\^aax Yes
Application hpe web_viewpoint ≤ t0986h01\^aai Yes
Application hpe web_viewpoint ≤ t0986l01\^aaj Yes
Application hpe web_viewpoint 15.02.00 Yes
Application hpe web_viewpoint 15.02.01 Yes
Application hpe web_viewpoint t0320l01\^aby Yes
Application hpe web_viewpoint t0320l01\^acd Yes
Application hpe nonstop - No

References