Intrusion Prevention

HP.SiteScope.Log.Analyzer.Information.Disclosure

Description

This indicates an attack attempt against a Privilege Escalation vulnerability in HP SiteScope.
The vulnerability is caused by an error when the vulnerable application handles a specially crafted URI. It allows remote attackers to escalate their privileges on vulnerable systems.

Affected Products

HP SiteScope 11.13
HP SiteScope 11.24.391 and prior
HP SiteScope 11.30.521 and prior

Impact

Privilege Escalation: Remote attackers can leverage their privilege on the vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor
https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay/?docId=emr_na-c04688784

CVE References

CVE-2015-2120