Cyber Resilience
← All news

HPE security advisory (AV26-745)

CCCS relays HPE advisory AV26-745 on vulnerabilities in Unified Correlation Analyzer (UCA) versions 4.4.11 and prior. If you run UCA, update now; most smaller shops don't operate it and can skip this.
Sources (1)
What this means for you — CISO:If you run HPE Unified Correlation Analyzer 4.4.11 or prior, review HPESBNW05085 and apply the updates.
What this means for you — Lean IT orgs:Most lean-IT shops do not run HPE UCA and can ignore this; if a vendor you depend on operates it, ask them whether they have patched.
What this means for you — MSP:Inventory client environments for HPE Unified Correlation Analyzer 4.4.11 and prior and schedule the HPESBNW05085 update where it appears.
What this means for you — Researcher:HPE advisory HPESBNW05085 rev.1 covers UCA 4.4.11 and prior; pull the vendor note for affected components and fix details.