CVE-2018-7077: HP XP p9000 Configuration Manager

High severity, CVSS 7.5. EPSS: 2.4% chance of exploitation in the next 30 days.

A security vulnerability in HPE XP P9000 Command View Advanced Edition (CVAE) Device Manager (DevMgr 8.5.0-00 and prior to 8.6.0-00), Configuration Manager (CM 8.5.0-00 and prior to 8.6.0-00) could be exploited to allow local and remote unauthorized access to sensitive information.

Affected products

  • HP XP p9000 Configuration Manager: from 8.5.0-00, before 8.6.0-00 (fixed in 8.6.0-00)
  • HP XP p9000 Device Manager: from 8.5.0-00, before 8.6.0-00 (fixed in 8.6.0-00)

Published 2018-08-14. Last modified 2026-06-17.