{"api_version":"1","generated_at":"2026-07-23T03:24:54+00:00","cve":"CVE-2011-0890","urls":{"html":"https://cve.report/CVE-2011-0890","api":"https://cve.report/api/cve/CVE-2011-0890.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2011-0890","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2011-0890"},"summary":{"title":"CVE-2011-0890","description":"HP Discovery & Dependency Mapping Inventory (DDMI) 7.50, 7.51, 7.60, 7.61, 7.70, and 9.30 launches the Windows SNMP service with its default configuration, which allows remote attackers to obtain potentially sensitive information or have unspecified other impact by leveraging the public read community.","state":"PUBLISHED","assigner":"hp","published_at":"2011-03-25 18:55:01","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-200","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://securityreason.com/securityalert/8163","name":"http://securityreason.com/securityalert/8163","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP Discovery & Dependency Mapping Inventory Insecure SNMP Configuration - CXSecurity.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2011/0755","name":"http://www.vupen.com/english/advisories/2011/0755","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/46981","name":"http://www.securityfocus.com/bid/46981","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP Discovery and Dependency Mapping Inventory SNMP Information Disclosure Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://securitytracker.com/id?1025239","name":"http://securitytracker.com/id?1025239","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP Discovery & Dependency Mapping Inventory (DDMI) Configuration Flaw Lets Remote Users Gain SNMP - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=130082163516878&w=2","name":"http://marc.info/?l=bugtraq&m=130082163516878&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"'[security bulletin] HPSBMA02647 SSRT100383 rev.1 - HP Discovery & Dependency Mapping Inventory (DDMI' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/66242","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/66242","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2011-0890","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2011-0890","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2011","cve_id":"890","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"discovery\\&dependency_mapping_inventory","cpe6":"7.50","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"890","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"discovery\\&dependency_mapping_inventory","cpe6":"7.51","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"890","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"discovery\\&dependency_mapping_inventory","cpe6":"7.60","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"890","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"discovery\\&dependency_mapping_inventory","cpe6":"7.61","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"890","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"discovery\\&dependency_mapping_inventory","cpe6":"7.70","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"890","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"discovery\\&dependency_mapping_inventory","cpe6":"9.30","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"890","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T22:05:54.579Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"hp-discovery-snmp-info-disclosure(66242)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/66242"},{"name":"1025239","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1025239"},{"name":"8163","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/8163"},{"name":"SSRT100383","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=130082163516878&w=2"},{"name":"HPSBMA02647","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=130082163516878&w=2"},{"name":"ADV-2011-0755","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2011/0755"},{"name":"46981","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/46981"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2011-03-21T00:00:00.000Z","descriptions":[{"lang":"en","value":"HP Discovery & Dependency Mapping Inventory (DDMI) 7.50, 7.51, 7.60, 7.61, 7.70, and 9.30 launches the Windows SNMP service with its default configuration, which allows remote attackers to obtain potentially sensitive information or have unspecified other impact by leveraging the public read community."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-08-16T14:57:01.000Z","orgId":"74586083-13ce-40fd-b46a-8e5d23cfbcb2","shortName":"hp"},"references":[{"name":"hp-discovery-snmp-info-disclosure(66242)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/66242"},{"name":"1025239","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1025239"},{"name":"8163","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/8163"},{"name":"SSRT100383","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=130082163516878&w=2"},{"name":"HPSBMA02647","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=130082163516878&w=2"},{"name":"ADV-2011-0755","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2011/0755"},{"name":"46981","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/46981"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"hp-security-alert@hp.com","ID":"CVE-2011-0890","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"HP Discovery & Dependency Mapping Inventory (DDMI) 7.50, 7.51, 7.60, 7.61, 7.70, and 9.30 launches the Windows SNMP service with its default configuration, which allows remote attackers to obtain potentially sensitive information or have unspecified other impact by leveraging the public read community."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"hp-discovery-snmp-info-disclosure(66242)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/66242"},{"name":"1025239","refsource":"SECTRACK","url":"http://securitytracker.com/id?1025239"},{"name":"8163","refsource":"SREASON","url":"http://securityreason.com/securityalert/8163"},{"name":"SSRT100383","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=130082163516878&w=2"},{"name":"HPSBMA02647","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=130082163516878&w=2"},{"name":"ADV-2011-0755","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2011/0755"},{"name":"46981","refsource":"BID","url":"http://www.securityfocus.com/bid/46981"}]}}}},"cveMetadata":{"assignerOrgId":"74586083-13ce-40fd-b46a-8e5d23cfbcb2","assignerShortName":"hp","cveId":"CVE-2011-0890","datePublished":"2011-03-25T18:00:00.000Z","dateReserved":"2011-02-04T00:00:00.000Z","dateUpdated":"2024-08-06T22:05:54.579Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-03-25 18:55:01","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-200","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:discovery\\&dependency_mapping_inventory:7.50:*:*:*:*:*:*:*","matchCriteriaId":"044B28F0-C1C5-4BE6-ADA7-28341024A1C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:discovery\\&dependency_mapping_inventory:7.51:*:*:*:*:*:*:*","matchCriteriaId":"146FFF61-C7B7-404C-9697-97AAF1138FAB"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:discovery\\&dependency_mapping_inventory:7.60:*:*:*:*:*:*:*","matchCriteriaId":"FD17A792-40FD-4032-8552-14464BAF93B4"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:discovery\\&dependency_mapping_inventory:7.61:*:*:*:*:*:*:*","matchCriteriaId":"839425E6-2DC4-44DE-99FA-8638B0DDC3DE"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:discovery\\&dependency_mapping_inventory:7.70:*:*:*:*:*:*:*","matchCriteriaId":"B180F4F2-6FC6-41AD-8134-80023F692F66"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:discovery\\&dependency_mapping_inventory:9.30:*:*:*:*:*:*:*","matchCriteriaId":"A5031736-4B2D-4861-A3DB-1467F212AB36"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*","matchCriteriaId":"2CF61F35-5905-4BA9-AD7E-7DB261D2F256"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2011","CveId":"890","Ordinal":"1","Title":"CVE-2011-0890","CVE":"CVE-2011-0890","Year":"2011"},"notes":[{"CveYear":"2011","CveId":"890","Ordinal":"1","NoteData":"HP Discovery & Dependency Mapping Inventory (DDMI) 7.50, 7.51, 7.60, 7.61, 7.70, and 9.30 launches the Windows SNMP service with its default configuration, which allows remote attackers to obtain potentially sensitive information or have unspecified other impact by leveraging the public read community.","Type":"Description","Title":"CVE-2011-0890"},{"CveYear":"2011","CveId":"890","Ordinal":"2","NoteData":"2011-03-25","Type":"Other","Title":"Published"},{"CveYear":"2011","CveId":"890","Ordinal":"3","NoteData":"2017-08-16","Type":"Other","Title":"Modified"}]}}}