CVE-2021-29218

A local unquoted search path security vulnerability has been identified in HPE Agentless Management Service for Windows version(s): Prior to 1.44.0.0, 10.96.0.0. This vulnerability could be exploited locally by a user with high privileges to execute malware that may lead to a loss of confidentiality, integrity, and availability. HPE has provided software updates to resolve the vulnerability in HPE Agentless Management Service for Windows.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:hpe:agentless_management:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:x64:*

Configuration 2 (hide)

AND
cpe:2.3:a:hpe:proliant_agentless_management:*:*:*:*:*:*:*:*
OR cpe:2.3:h:hpe:apollo_20:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:apollo_2000_gen_10_plus:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:apollo_6500:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:apollo_6500_gen10_plus:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:apollo_80:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:proliant_dl:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:proliant_ml:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:synergy_480_gen9:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:synergy_620_gen9:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:synergy_660_gen9:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:synergy_680_gen9:-:*:*:*:*:*:*:*

Information

Published : 2022-02-04 15:15

Updated : 2022-02-09 08:51


NVD link : CVE-2021-29218

Mitre link : CVE-2021-29218


JSON object : View

CWE
CWE-428

Unquoted Search Path or Element

Advertisement

dedicated server usa

Products Affected

hpe

  • proliant_agentless_management
  • apollo_20
  • apollo_80
  • proliant_ml
  • synergy_620_gen9
  • apollo_6500
  • apollo_2000_gen_10_plus
  • synergy_680_gen9
  • proliant_dl
  • synergy_480_gen9
  • agentless_management
  • synergy_660_gen9
  • apollo_6500_gen10_plus

microsoft

  • windows