Vulnerabilities > HP > Storage Essentials > 9.5.0.142

DATE CVE VULNERABILITY TITLE RISK
2020-03-10 CVE-2017-10992 Deserialization of Untrusted Data vulnerability in HP Storage Essentials 9.5.0.142
In HPE Storage Essentials 9.5.0.142, there is Unauthenticated Java Deserialization with remote code execution via OS commands in a request to invoker/JMXInvokerServlet, aka PSRT110461.
network
low complexity
hp CWE-502
critical
9.8