hp bluedata-epic CVE-2020-7196 vulnerability in HP Products
Published on October 26, 2020

The HPE BlueData EPIC Software Platform version 4.0 and HPE Ezmeral Container Platform 5.0 use an insecure method of handling sensitive Kerberos passwords that is susceptible to unauthorized interception and/or retrieval. Specifically, they display the kdc_admin_password in the source file of the url "/bdswebui/assignusers/".

NVD


Products Associated with CVE-2020-7196

stack.watch emails you whenever new vulnerabilities are published in HP Bluedata Epic or HP Ezmeral Container Platform. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
0.16%
Percentile
36.62%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.