CVE-2008-0712

critical

Description

Unspecified vulnerability in the HP HPeDiag (aka eSupportDiagnostics) ActiveX control in hpediag.dll in HP Software Update 4.000.009.002 and earlier allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors. NOTE: this might overlap CVE-2007-6513.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/42003

http://www.vupen.com/english/advisories/2008/1356/references

http://www.securitytracker.com/id?1019922

http://www.securityfocus.com/bid/28929

http://secunia.com/advisories/29966

http://marc.info/?l=bugtraq&m=120907060320901&w=2

Details

Source: Mitre, NVD

Published: 2008-04-25

Updated: 2017-08-08

Risk Information

CVSS v2

Base Score: 6.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical