CVE-2018-7110: HPE Service Governance Framework

Medium severity, CVSS 5.9. EPSS: 0.7% chance of exploitation in the next 30 days.

A remote unauthorized disclosure of information vulnerability was identified in HPE Service Governance Framework (SGF) version 4.2, 4.3. A race condition under high load in SGF exists where SGF transferred different parameter to the enabler.

Affected products

  • HPE Service Governance Framework: version 4.2 only; version 4.3 only

Published 2018-10-17. Last modified 2026-06-17.