CVE-2020-7140: HP Icewall SSO Dfw

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

A security vulnerability in HPE IceWall SSO Dfw and Dgfw (Domain Gateway Option) could be exploited remotely to cause a remote cross-site scripting (XSS). HPE has provided the following information to resolve this vulnerability in HPE IceWall SSO DFW and Dgfw: https://www.hpe.com/jp/icewall_patchaccess

Affected products

  • HP Icewall SSO Dfw: version 11.0 only
  • HP Icewall SSO Dgfw: version 11.0 only

Published 2020-07-08. Last modified 2026-06-17.