CVE-2011-0890
Summary
| CVE | CVE-2011-0890 |
|---|---|
| State | PUBLISHED |
| Assigner | hp |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2011-03-25 18:55:01 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | HP Discovery & Dependency Mapping Inventory (DDMI) 7.50, 7.51, 7.60, 7.61, 7.70, and 9.30 launches the Windows SNMP service with its default configuration, which allows remote attackers to obtain potentially sensitive information or have unspecified other impact by leveraging the public read community. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
NoneAvailability
NoneAV:N/AC:L/Au:N/C:P/I:N/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Hp | Discoverydependency Mapping Inventory | 7.50 | All | All | All |
| Application | Hp | Discoverydependency Mapping Inventory | 7.51 | All | All | All |
| Application | Hp | Discoverydependency Mapping Inventory | 7.60 | All | All | All |
| Application | Hp | Discoverydependency Mapping Inventory | 7.61 | All | All | All |
| Application | Hp | Discoverydependency Mapping Inventory | 7.70 | All | All | All |
| Application | Hp | Discoverydependency Mapping Inventory | 9.30 | All | All | All |
| Operating System | Microsoft | Windows | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| HP Discovery & Dependency Mapping Inventory Insecure SNMP Configuration - CXSecurity.com | af854a3a-2127-422b-91ae-364da2661108 | securityreason.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| HP Discovery and Dependency Mapping Inventory SNMP Information Disclosure Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| HP Discovery & Dependency Mapping Inventory (DDMI) Configuration Flaw Lets Remote Users Gain SNMP - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| '[security bulletin] HPSBMA02647 SSRT100383 rev.1 - HP Discovery & Dependency Mapping Inventory (DDMI' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | Vendor Advisory |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.