Insight Control Server Deployment
Vendor:
First CVE: Dec 7, 2010 · Active for 15 years
8
Total CVEs
More Total CVEs than 85% of tracked products
2.0
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 39% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Insight Control Server Deployment over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 7, 2010
15 years ago
Most Recent CVE
Jun 8, 2016
3,701 days ago
CVE Severity & Scoring
Insight Control Server Deployment8 CVEs
38%
63%
All CVEs352,727 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local1 (12.5%)
Network3 (37.5%)
Unknown4 (50.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (50.0%)
High0 (0.0%)
Unknown4 (50.0%)
User Interaction
None3 (37.5%)
Unknown4 (50.0%)
Required1 (12.5%)
Privileges Required
Low1 (12.5%)
High0 (0.0%)
None3 (37.5%)
Unknown4 (50.0%)
Top CVEs
Signals from CVEs in this product scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-4494HIGH Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service | Dec 7, 2010 | 7.5 | 26 | NO | NO |
CVE-2016-4365HIGH HPE Insight Control server deployment allows remote attackers to obtain sensitive information via unspecified vectors. | Jun 8, 2016 | 7.5 | 25 | NO | NO |
CVE-2016-4364HIGH HPE Insight Control server deployment allows local users to gain privileges via unspecified vectors. | Jun 8, 2016 | 8.4 | 25 | NO | NO |
CVE-2016-4362HIGH HPE Insight Control server deployment allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors. | Jun 8, 2016 | 8.1 | 25 | NO | NO |
CVE-2013-6206HIGH Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment allows remote attackers to obtain sensitive information, modify data, or cause a d | Mar 14, 2014 | 9.0 | 23 | NO | NO |
CVE-2016-4363MEDIUM HPE Insight Control server deployment allows remote attackers to modify data via unspecified vectors. | Jun 8, 2016 | 6.1 | 21 | NO | NO |
CVE-2013-6205MEDIUM Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment allows local users to obtain sensitive information, modify data, or cause a denial | Mar 14, 2014 | 4.1 | 15 | NO | NO |
CVE-2014-7881MEDIUM Cross-site scripting (XSS) vulnerability in the server in HP Insight Control allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Jan 15, 2015 | 4.3 | 14 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (8 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (8 CVEs).
Media Mentions
Signals from CVEs in this product scope (8 CVEs).
Top CNAs Publishing CVEs For Insight Control Server Deployment
Top CWEs
Versions
No cataloged versions.