PT-2025-23516 · Hewlett Packard · Hpe Storeonce

Published

2024-10-31

·

Updated

2025-07-02

·

CVE-2025-37091

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HPE StoreOnce Software (affected versions not specified)
Description A command injection remote code execution issue exists. This allows for the execution of arbitrary commands, potentially leading to unauthorized access and control.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Command Injection

Weakness Enumeration

Related Identifiers

BDU:2025-06385
CVE-2025-37091
ZDI-25-314

Affected Products

Hpe Storeonce