CVE-2019-11988: HPE Smart Update Manager

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

A Remote Unauthorized Access vulnerability was identified in HPE Smart Update Manager (SUM) earlier than version 8.3.5.

Affected products

  • HPE Smart Update Manager: before 8.3.5 (fixed in 8.3.5)

Published 2019-06-05. Last modified 2026-06-17.