CVE-2018-7107

A potential security vulnerability has been identified in HPE Device Entitlement Gateway (DEG) v3.2.4, v3.3 and v3.3.1. The vulnerability could be remotely exploited to allow local SQL injection and elevation of privilege.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hpe:device_entitlement_gateway:3.3:*:*:*:*:*:*:*
cpe:2.3:a:hpe:device_entitlement_gateway:3.3.1:*:*:*:*:*:*:*
cpe:2.3:a:hpe:device_entitlement_gateway:3.2.4:*:*:*:*:*:*:*

Information

Published : 2018-09-27 11:29

Updated : 2018-11-21 15:11


NVD link : CVE-2018-7107

Mitre link : CVE-2018-7107


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

hpe

  • device_entitlement_gateway