CVE-2019-11987: HPE Smart Update Manager

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A security vulnerability in HPE Smart Update Manager (SUM) prior to v8.4 could allow local unauthorized elevation of privilege.

Affected products

  • HPE Smart Update Manager: before 8.4 (fixed in 8.4)

Published 2019-06-05. Last modified 2026-06-17.