---
cve: "CVE-2015-2125"
severity: "LOW"
cvss: 3.1
epss: "8%"
vendor: "n/a"
kev: false
exploited: false
published: "2015-06-07 18:59:06"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-11T09:39:40+02:00"
---

# CVE-2015-2125

> 3.1 LOW · 🧪 PoC

## Beschreibung

Unspecified vulnerability in HP WebInspect 7.x through 10.4 before 10.4 update 1 allows remote authenticated users to bypass intended access restrictions via unknown vectors.

## Exploit-Evidenz

- [EDB-37250 — HP WebInspect 10.4 - XML External Entity Injection](https://www.exploit-db.com/exploits/37250)

## Referenzen

- <https://www.exploit-db.com/exploits/37250/>
- <https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04695307>
- <http://www.securityfocus.com/bid/75036>
- <http://www.securitytracker.com/id/1032478>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2015-2125) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
