CVE-2014-7883: HP Universal Configuration Management Database

Medium severity, CVSS 5.0. EPSS: 37% chance of exploitation in the next 30 days.

HP Universal CMDB (UCMDB) Probe 9.05, 10.01, and 10.11 enables the HTTP TRACE method, which allows remote attackers to obtain sensitive information by reading the headers of a response.

Affected products

  • HP Universal Configuration Management Database: version 9.05 only; version 10.01 only; version 10.11 only

Published 2015-02-15. Last modified 2026-06-17.