cbcvebase.
CVE-2023-28084
published 2023-04-25

CVE-2023-28084: HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens

PriorityP423medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.19%
8.6th percentile
HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens

Affected

6 ranges
VendorProductVersion rangeFixed in
hewlett_packard_enterprisehpe_oneview< 6.60.046.60.04
hewlett_packard_enterprisehpe_oneview<= 8.2
hewlett_packard_enterprisehpe_oneview_global_dashboard< 2.722.72
hponeview< 6.60.046.60.04
hponeview>= 7.0 < 8.28.2
hpeoneview_global_dashboard< 2.722.72
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.