← All CVEs

CVE-2012-4361

high · 7.7

lhn/public/network/ping in HP SAN/iQ before 9.5 on the HP Virtual SAN Appliance allows remote authenticated users to execute arbitrary commands via shell metacharacters in the second parameter.

7.7
CVSS
47.8%
EPSS (exploit prob.)
99th
EPSS percentile
2012-08-20
Published

AV:A/AC:L/Au:S/C:C/I:C/A:C

Weaknesses

CWE-78

Affected products

VendorProductAffected versions
hpsan/iq<= 9.0
hpsan/iq8.0
hpsan/iq8.1
hpsan/iq8.5
hpvirtual_san_applianceall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2012-4361