Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-4361

Overview

Vulnerability Score 7.7 7.7
CVE Id CVE-2012-4361
Last Modified 21 Aug 2012 12:00:00
Published 20 Aug 2012 06:55:01
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector ADJACENT_NETWORK
Access Complexity LOW
Authentication SINGLE_INSTANCE

CVE-2012-4361

Summary

lhn/public/network/ping in HP SAN/iQ before 9.5 on the HP Virtual SAN Appliance allows remote authenticated users to execute arbitrary commands via shell metacharacters in the second parameter.

Vulnerable Systems

Application

  • Hp San%2fiq 8.0

  • Hp San%2fiq 8.1

  • Hp San%2fiq 8.5

  • Hp San%2fiq 9.0


References

CERT-VN - VU#441363

EXPLOIT-DB - 18901

EXPLOIT-DB - 18893


Last Updated: 27 May 2016 10:57:35