SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2014-2600

Unspecified vulnerability in HP IceWall Identity Manager 4.0 through SP1 and 5.0 and IceWall SSO 10.0 Password Reset Option, when Apache Commons FileUpload is used, allows remote authenticated users to cause a denial of service via unknown vectors.

MEDIUM 4.0EPSS 1.23%

Does this matter?

Lower severity and a low EPSS score (1.23%). Track it; it rarely justifies an emergency change on its own.

Description

Unspecified vulnerability in HP IceWall Identity Manager 4.0 through SP1 and 5.0 and IceWall SSO 10.0 Password Reset Option, when Apache Commons FileUpload is used, allows remote authenticated users to cause a denial of service via unknown vectors.

CVSS 2.0
4.0 MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
EPSS
1.23% probability · 67th percentile
CISA KEV
Not listed
Affected
hp/icewall identity manager · hp/icewall sso password reset option
Source
hp-security-alert@hp.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.