Home/Product/hp power manager
Product

hp power manager

17 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-49600
< 3.17
Dell Power Manager (DPM), versions prior to 3.17, contain an improper access control vulnerability. A low privileged attacker with
7.8HIGH
CVE-2024-39576
< 3.16.0
Dell Power Manager (DPM), versions 3.15.0 and prior, contains an Incorrect Privilege Assignment vulnerability. A low privileged at
8.8HIGH
CVE-2023-25543
< 3.14
Dell Power Manager, versions prior to 3.14, contain an Improper Authorization vulnerability in DPM service. A low privileged malic
7.8HIGH
CVE-2023-32450
>= 3.3 and < 3.15
Dell Power Manager, Versions 3.3 to 3.14 contains an Improper Access Control vulnerability. A low-privileged malicious user may po
6.1MEDIUM
CVE-2023-28051
< 3.11
Dell Power Manager, versions 3.10 and prior, contains an Improper Access Control vulnerability. A low-privileged attacker could po
7.8HIGH
CVE-2020-7547
all versions
A CWE-284: Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Software (
8.8HIGH
CVE-2020-7546
all versions
A CWE-79: Improper Neutralization of Input During Web Page Generation vulnerability exists in EcoStruxureª and SmartStruxureª Po
5.4MEDIUM
CVE-2020-7545
all versions
A CWE-284:Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Software (s
7.2HIGH
CVE-2018-19982
all versions
An issue was discovered on KT MC01507L Z-Wave S0 devices. It occurs because HPKP is not implemented. The communication architectur
5.3MEDIUM
CVE-2011-0280
<= 4.3.2
Multiple cross-site scripting (XSS) vulnerabilities in HP Power Manager (HPPM) 4.3.2 and earlier allow remote attackers to inject
CVE-2011-0277
<= 4.3.2
Cross-site request forgery (CSRF) vulnerability in HP Power Manager (HPPM) 4.3.2 and earlier allows remote attackers to hijack the
CVE-2010-4113
<= 4.2.9
Stack-based buffer overflow in HP Power Manager (HPPM) before 4.3.2 allows remote attackers to execute arbitrary code via a long L
CVE-2009-4997
all versions
gnome-power-manager 2.27.92 does not properly implement the lock_on_suspend and lock_on_hibernate settings for locking the screen
CVE-2006-7240
all versions
gnome-power-manager 2.14.0 does not properly implement the lock_on_suspend and lock_on_hibernate settings for locking the screen w
CVE-2009-4000
<= 4.2.9
Directory traversal vulnerability in goform/formExportDataLogs in HP Power Manager before 4.2.10 allows remote attackers to overwr
CVE-2009-3999
<= 4.2.9
Stack-based buffer overflow in goform/formExportDataLogs in HP Power Manager before 4.2.10 allows remote attackers to execute arbi
CVE-2009-2685
all versions
Stack-based buffer overflow in the login form in the management web server in HP Power Manager allows remote attackers to execute
threatengine.sh