CVE-2010-3986 describes an unspecified vulnerability in HP Virtual Connect Enterprise Manager (VCEM) versions 6.0 and 6.1, allowing remote attackers to read arbitrary files. With a CVSS score of 5.0, it represents a medium severity issue, requiring no authentication and low attack complexity to achieve partial confidentiality impact. Despite its age, there is no known public exploit code available in Metasploit, Nuclei, or ExploitDB, and it is not listed in CISA's KEV catalog. Community discussion is minimal, with only one mention, and there is no media coverage, indicating a low level of public attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.0CPE matchmatch criteria | cpe:2.3:a:hp:virtual_connect_enterprise_manager:6.0:*:*:*:*:*:*:* | ||
6.1CPE matchmatch criteria | cpe:2.3:a:hp:virtual_connect_enterprise_manager:6.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
[R1] HP Multiple Products switchFWInstallStatus.jsp logfile Parameter Arbitrary File Access
Oct 13, 2010[R1] HP Multiple Products switchFWInstallStatus.jsp logfile Parameter Arbitrary File Access
Oct 13, 2010[R1] HP Multiple Products switchFWInstallStatus.jsp logfile Parameter Arbitrary File Access
Oct 13, 2010[R1] HP Multiple Products switchFWInstallStatus.jsp logfile Parameter Arbitrary File Access
Oct 13, 2010