Multiple Vulnerabilities have been discovered in HPE StoreOnce Software, which when chained together could allow for remote code execution, potentially leading to session hijacking and full system compromise. HPE StoreOnce is a data protection platform from Hewlett Packard Enterprise that uses deduplication to reduce backup storage requirements and improve backup and recovery speeds. Successful exploitation of these vulnerabilities could allow remote code execution, disclosure of information, server-side request forgery, authentication bypass, arbitrary file deletion, and directory traversal information disclosure.
Multiple Vulnerabilities in HPE StoreOnce Software Could Allow for Remote Code Execution
Recent Posts
- The Hidden Cost of Oversharing: How Your Social Posts Fuel Doxxing Campaigns
- The UK’s Four-Step Framework for Supply Chain Resilience
- AI-driven OSINT in the wrong hands – and why everyone could be a target for fraud
- Security vs. Compliance: What’s the Difference?
- How QR-code phishing can slip past corporate security measures