ZDI-25-319: Hewlett Packard Enterprise StoreOnce VSA getServerCertificate Command Injection Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hewlett Packard Enterprise StoreOnce VSA. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2025-37096.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-25-319?
The severity of ZDI-25-319 is critical due to the potential for remote code execution by attackers.
How does ZDI-25-319 affect Hewlett Packard Enterprise StoreOnce VSA installations?
ZDI-25-319 allows authenticated remote attackers to execute arbitrary code by bypassing the existing authentication mechanism.
What are the potential impacts of exploiting ZDI-25-319?
Exploiting ZDI-25-319 can lead to unauthorized access and control over the affected Hewlett Packard Enterprise StoreOnce VSA installations.
How do I fix ZDI-25-319?
To fix ZDI-25-319, apply the recommended security patches from Hewlett Packard Enterprise as soon as they are available.
Is authentication sufficient to protect against ZDI-25-319?
No, the authentication required can be bypassed, making additional security measures necessary to mitigate the vulnerability.