A Remote Arbitrary Command Execution vulnerability in HPE StoreVirtual 4000 Storage and StoreVirtual VSA Software running LeftHand OS version v12.5 and earlier was found. The problem was resolved in LeftHand OS v12.6 or any subsequent version.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
http://www.securitytracker.com/id/1037762 | vdb entry third party advisory |
https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-c05382958 | vendor advisory |
http://www.securityfocus.com/bid/95970 | vdb entry third party advisory |