<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: OneView for vCenter Security vulnerability in HPE OneView</title>
    <link>https://community.hpe.com/t5/hpe-oneview/oneview-for-vcenter-security-vulnerability/m-p/7208944#M9068</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I think its more to do with VMware or Qualys, rather than OneView.&lt;/P&gt;&lt;P&gt;Have you consulted VMware or Qualys regarding this issue?&lt;BR /&gt;&lt;A href="https://success.qualys.com/support/s/article/000006279" target="_blank"&gt;https://success.qualys.com/support/s/article/000006279&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://success.qualys.com/support/s/article/000006387" target="_blank"&gt;https://success.qualys.com/support/s/article/000006387&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://success.qualys.com/discussions/s/question/0D52L00004To0WSSAZ/how-does-one-resolve-qid11827-http-security-header-not-detected-for-vmware-esxi-670-build-16075168" target="_blank"&gt;https://success.qualys.com/discussions/s/question/0D52L00004To0WSSAZ/how-does-one-resolve-qid11827-http-security-header-not-detected-for-vmware-esxi-670-build-16075168&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Thank You!&lt;BR /&gt;I work with HPE but opinions expressed here are mine.&lt;/P&gt;</description>
    <pubDate>Thu, 14 Mar 2024 11:14:47 GMT</pubDate>
    <dc:creator>Suman_1978</dc:creator>
    <dc:date>2024-03-14T11:14:47Z</dc:date>
    <item>
      <title>OneView for vCenter Security vulnerability</title>
      <link>https://community.hpe.com/t5/hpe-oneview/oneview-for-vcenter-security-vulnerability/m-p/7208745#M9066</link>
      <description>&lt;P&gt;The OneView for vCenter instance for my customer was flagged during a Qualys security scan for the following.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Qualys QID: 11827 HTTP Security Header not detected. &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Has anyone seen that before and know how to fix the vulnerability?&lt;/P&gt;&lt;P&gt;They are using version 11.4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2024 17:38:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/oneview-for-vcenter-security-vulnerability/m-p/7208745#M9066</guid>
      <dc:creator>msobers22</dc:creator>
      <dc:date>2024-03-12T17:38:36Z</dc:date>
    </item>
    <item>
      <title>Re: OneView for vCenter Security vulnerability</title>
      <link>https://community.hpe.com/t5/hpe-oneview/oneview-for-vcenter-security-vulnerability/m-p/7208944#M9068</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I think its more to do with VMware or Qualys, rather than OneView.&lt;/P&gt;&lt;P&gt;Have you consulted VMware or Qualys regarding this issue?&lt;BR /&gt;&lt;A href="https://success.qualys.com/support/s/article/000006279" target="_blank"&gt;https://success.qualys.com/support/s/article/000006279&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://success.qualys.com/support/s/article/000006387" target="_blank"&gt;https://success.qualys.com/support/s/article/000006387&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://success.qualys.com/discussions/s/question/0D52L00004To0WSSAZ/how-does-one-resolve-qid11827-http-security-header-not-detected-for-vmware-esxi-670-build-16075168" target="_blank"&gt;https://success.qualys.com/discussions/s/question/0D52L00004To0WSSAZ/how-does-one-resolve-qid11827-http-security-header-not-detected-for-vmware-esxi-670-build-16075168&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Thank You!&lt;BR /&gt;I work with HPE but opinions expressed here are mine.&lt;/P&gt;</description>
      <pubDate>Thu, 14 Mar 2024 11:14:47 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/oneview-for-vcenter-security-vulnerability/m-p/7208944#M9068</guid>
      <dc:creator>Suman_1978</dc:creator>
      <dc:date>2024-03-14T11:14:47Z</dc:date>
    </item>
    <item>
      <title>Re: OneView for vCenter Security vulnerability</title>
      <link>https://community.hpe.com/t5/hpe-oneview/oneview-for-vcenter-security-vulnerability/m-p/7209561#M9085</link>
      <description>&lt;P&gt;If Qualys reports this for OV4VC its clearly and OV4VC or Qualys issue. But why should this be a&amp;nbsp;&lt;SPAN&gt;VMware&amp;nbsp;issue?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 19 Mar 2024 14:56:51 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/oneview-for-vcenter-security-vulnerability/m-p/7209561#M9085</guid>
      <dc:creator>pirx</dc:creator>
      <dc:date>2024-03-19T14:56:51Z</dc:date>
    </item>
  </channel>
</rss>

