← Vulnerability feed

Vulnerability record · CVE-2016-8513 · published 15 February 2018

CVE-2016-8513: Hp version control repository manager cross-site request forgery vulnerability

Hp · Version Control Repository Manager

A Cross-Site Request Forgery (CSRF) vulnerability in HPE Version Control Repository Manager (VCRM) was found. The problem impacts all versions prior to 7.6.

8.0 CVSS 3.0 High EPSS 0.68% · top 49.3% CWE-352 · Cross-site request forgery
8.0CVSS 3.0 base score, v2 6.0
0.68%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
8References
17 Jun 2026Last modified by NVD

Description

A Cross-Site Request Forgery (CSRF) vulnerability in HPE Version Control Repository Manager (VCRM) was found. The problem impacts all versions prior to 7.6.

CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2016-8513 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2015-3113Adobe Flash Player heap buffer overflow allows remote code executionAdobe Flash Player contains a heap-based buffer overflow (CWE-122/CWE-787) reachable through unspecified vectors. It affects Flash Player before 13.0…KEVEPSS 100%analysed8.8CVE-2015-8651Adobe Flash Player Integer Overflow Allows Remote Code ExecutionAdobe Flash Player, AIR, AIR SDK and AIR SDK & Compiler contain an integer overflow (CWE-190) that allows attackers to execute arbitrary code via uns…KEVEPSS 68%analysed8.8CVE-2016-8515Hp version control repository manager unrestricted file upload vulnerabilityA remote malicious file upload vulnerability in HPE Version Control Repository Manager (VCRM) was found. The problem impacts all versions prior to 7.…EPSS 1.9%7.5CVE-2015-5409Hp version control repository manager memory buffer overflow vulnerabilityBuffer overflow in HP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to modify data or cause a denial of se…EPSS 2.3%6.8CVE-2015-5411Hp version control repository manager information exposure vulnerabilityHP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to obtain sensitive information via unspecified vectors.EPSS 2.1%6.5CVE-2017-5787Hp version control repository manager vulnerabilityA remote denial of service vulnerability in HPE Version Control Repository Manager (VCRM) in all versions prior to 7.6 was found.EPSS 2.3%6.5CVE-2016-8514Hp version control repository manager information exposure vulnerabilityA remote information disclosure in HPE Version Control Repository Manager (VCRM) was found. The problem impacts all versions prior to 7.6.EPSS 1.7%6.5CVE-2015-5410Hp version control repository manager vulnerabilityHP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to execute arbitrary code or cause a denial of service vi…EPSS 2.8%

Source: NIST National Vulnerability Database (record CVE-2016-8513), CISA KEV, FIRST EPSS (scores of 2026-10-03). This page is refreshed as NVD updates the record.