CVE-2018-6493
Description
SQL Injection in HP Network Operations Management Ultimate, version 2017.07, 2017.11, 2018.02 and in Network Automation, version 10.00, 10.10, 10.11, 10.20, 10.30, 10.40, 10.50. This vulnerability could be remotely exploited to allow Remote SQL Injection.
Risk Information
Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.162
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Vulnerabilities CVE-2018-6492 ,CVE-2018-6493 are affected in network_automation 10.50 | NCM |
| Vulnerabilities CVE-2018-6492 ,CVE-2018-6493 are affected in network_operations_management_ultimate 2018.02 | NCM |
| Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability (CVE-2018-6493) | NCM |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234