Back to Database
Status published
High
CVE-2016-4395
HPE System Management Homepage before v7.6 allows remote attackers to...
Vulnerability Description
HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, related to a "Buffer Overflow" issue.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-4395
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.zerodayinitiative.com/advisories/ZDI-16-587
- http://www.securityfocus.com/bid/93961
- https://www.tenable.com/security/research/tra-2016-32
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722
- https://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c05320149
More from HPE
View All →CVE-2023-50271
HP-UX System Management Homepage, Disclosure of Information
High
7.2
CVE-2023-28083
Potential Cross-Site scripting vulnerability in HPE Integrated Lights-Out 6 (iLO 6), Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 4 (iLO 4).
High
8.3
CVE-2022-37931
A vulnerability in NetBatch-Plus software allows unauthorized access to the application
High
7.3
CVE-2020-7135
A potential security vulnerability has been identified in the disk...
High
7.8
CVE-2019-12000
HPE has found a potential Remote Access Restriction Bypass in...
Medium
6.6
Affected Vendor
Affected Software
HPE System Management Homepage before v7.6
Vulnerable Versions:
HPE System Management Homepage before v7.6
Timeline
Official Publish:
October 28th, 2016
Last Modified:
August 6th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.