A Remote Code Execution vulnerability in HPE Network Automation using RPCServlet and Java Deserialization version v9.1x, v9.2x, v10.00, v10.00.01, v10.00.02, v10.10, v10.11, v10.11.01, v10.20 was found.
2018-02-15T22:29:00.230
2024-11-21T02:59:30.283
Modified
CVSSv3.0: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | hp | network_automation | 9.10 | Yes |
Application | hp | network_automation | 9.20 | Yes |
Application | hp | network_automation | 9.22 | Yes |
Application | hp | network_automation | 9.22.01 | Yes |
Application | hp | network_automation | 9.22.02 | Yes |
Application | hp | network_automation | 10.00 | Yes |
Application | hp | network_automation | 10.00.01 | Yes |
Application | hp | network_automation | 10.00.02 | Yes |
Application | hp | network_automation | 10.10 | Yes |
Application | hp | network_automation | 10.11 | Yes |
Application | hp | network_automation | 10.11.01 | Yes |
Application | hp | network_automation | 10.20 | Yes |