lhn/public/network/ping in HP SAN/iQ before 9.5 on the HP Virtual SAN Appliance allows remote authenticated users to execute arbitrary commands via shell metacharacters in the second parameter.
2012-08-20T22:55:01.503
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.7 (HIGH)
AV:A/AC:L/Au:S/C:C/I:C/A:C
5.1
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | hp | san\/iq | ≤ 9.0 | Yes |
Application | hp | san\/iq | 8.0 | Yes |
Application | hp | san\/iq | 8.1 | Yes |
Application | hp | san\/iq | 8.5 | Yes |
Hardware | hp | virtual_san_appliance | - | No |