CVE-2021-3191
Idelji Web ViewPoint Suite, as used in conjunction with HPE NonStop, allows Remote Unauthorized Access for T0320L01^ABY and T0320L01^ACD, T0952L01^AAR through T0952L01^AAX, and T0986L01^AAD through T0986L01^AAJ (L) and T0320H01^ABW through T0320H01^ACC,…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.60%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Idelji Web ViewPoint Suite, as used in conjunction with HPE NonStop, allows Remote Unauthorized Access for T0320L01^ABY and T0320L01^ACD, T0952L01^AAR through T0952L01^AAX, and T0986L01^AAD through T0986L01^AAJ (L) and T0320H01^ABW through T0320H01^ACC, T0952H01^AAQ through T0952H01^AAW, and T0986H01^AAC through T0986H01^AAI (J and H).
- CVSS 3.1
- 8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 3.60% probability · 89th percentile
- CISA KEV
- Not listed
- Affected
- hpe/web viewpoint
- Source
- cve@mitre.org
References
- https://idelji.comProduct
- https://support.hpe.com/hpesc/public/docDisplay?docLocale=en_US&docId=hpesbns04081en_usVendor Advisory
- https://techpartner.ext.hpe.com/TechPartner/PartnerDetail.xhtml?Partner=IdeljiVendor Advisory
- https://idelji.comProduct
- https://support.hpe.com/hpesc/public/docDisplay?docLocale=en_US&docId=hpesbns04081en_usVendor Advisory
- https://techpartner.ext.hpe.com/TechPartner/PartnerDetail.xhtml?Partner=IdeljiVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.