An authentication vulnerability in HPE BSM Platform Application Performance Management System Health product versions 9.26, 9.30 and 9.40, allows remote users to traverse directory leading to disclosure of information.Referenceshttp://zerodayinitiative.com/advisories/ZDI-17-721/https://softwaresupport.hpe.com/km/KM02942065https://www.auscert.org.au/bulletins/52154