← Vulnerability feed

Vulnerability record · CVE-2017-8988 · published 6 August 2018

CVE-2017-8988: Hp xp command view vulnerability

Hp · Xp Command View

A Remote Bypass of Security Restrictions vulnerability was identified in HPE XP Command View Advanced Edition Software Earlier than 8.5.3-00. The vulnerability impacts DevMgr Earlier than 8.5.3-00 (for Windows, Linux), RepMgr earlier than 8.5.3-00 (for Windows, Linux) and HDLM earlier than 8.5.3-00 (for Windows, Linux, Solaris, AIX).

9.8 CVSS 3.0 Critical EPSS 2.7% · top 14.8%
9.8CVSS 3.0 base score, v2 7.5
2.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

A Remote Bypass of Security Restrictions vulnerability was identified in HPE XP Command View Advanced Edition Software Earlier than 8.5.3-00. The vulnerability impacts DevMgr Earlier than 8.5.3-00 (for Windows, Linux), RepMgr earlier than 8.5.3-00 (for Windows, Linux) and HDLM earlier than 8.5.3-00 (for Windows, Linux, Solaris, AIX).

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2017-8988 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.3CVE-2018-2633Oracle jdk vulnerabilityVulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). Supported versions that are affected are Ja…EPSS 5.7%7.4CVE-2018-2637Oracle jdk vulnerabilityVulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JMX). Supported versions that are affected are Jav…EPSS 4.6%6.8CVE-2018-2634Oracle jdk vulnerabilityVulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JGSS). Supported versions that are affected are Java SE: 7u…EPSS 4.5%6.5CVE-2018-2582Oracle jdk vulnerabilityVulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE:…EPSS 4.7%6.1CVE-2018-2641Oracle jdk vulnerabilityVulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are Java SE: 6u1…EPSS 5.1%5.9CVE-2018-2618Oracle jdk vulnerabilityVulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JCE). Supported versions that are affected are Jav…EPSS 4.7%5.3CVE-2018-2657Oracle jdk vulnerabilityVulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u…EPSS 7.5%5.3CVE-2018-2629Oracle jdk vulnerabilityVulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JGSS). Supported versions that are affected are Ja…EPSS 4.8%

Source: NIST National Vulnerability Database (record CVE-2017-8988), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.