StoreOnce Software
by HPE
CVEs (10)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-37096 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2025 | A command injection remote code execution vulnerability exists in HPE StoreOnce Software. | ||
| CVE-2025-37095 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2025 | A directory traversal information disclosure vulnerability exists in HPE StoreOnce Software. | ||
| CVE-2025-37093 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2025 | An authentication bypass vulnerability exists in HPE StoreOnce Software. | ||
| CVE-2025-37092 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2025 | A command injection remote code execution vulnerability exists in HPE StoreOnce Software. | ||
| CVE-2025-37090 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2025 | A server-side request forgery vulnerability exists in HPE StoreOnce Software. | ||
| CVE-2025-37089 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2025 | A command injection remote code execution vulnerability exists in HPE StoreOnce Software. | ||
| CVE-2022-28622 | Hig | 0.49 | 7.5 | 0.01 | Jun 27, 2022 | A potential security vulnerability has been identified in HPE StoreOnce Software. The SSH server supports weak key exchange algorithms which could lead to remote unauthorized access. HPE has made the following software update to resolve the vulnerability in HPE StoreOnce… | ||
| CVE-2025-37091 | Hig | 0.47 | 7.2 | 0.01 | Jun 2, 2025 | A command injection remote code execution vulnerability exists in HPE StoreOnce Software. | ||
| CVE-2021-26587 | Med | 0.42 | 6.5 | 0.01 | Sep 27, 2021 | A potential DOM-based Cross Site Scripting security vulnerability has been identified in HPE StoreOnce. The vulnerability could be remotely exploited to cause an elevation of privilege leading to partial impact to confidentiality, availability, and integrity. HPE has made the… | ||
| CVE-2025-37094 | Med | 0.36 | 5.5 | 0.01 | Jun 2, 2025 | A directory traversal arbitrary file deletion vulnerability exists in HPE StoreOnce Software. |
- risk 0.64cvss 9.8epss 0.01
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
- risk 0.64cvss 9.8epss 0.01
A directory traversal information disclosure vulnerability exists in HPE StoreOnce Software.
- risk 0.64cvss 9.8epss 0.01
An authentication bypass vulnerability exists in HPE StoreOnce Software.
- risk 0.64cvss 9.8epss 0.01
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
- risk 0.64cvss 9.8epss 0.01
A server-side request forgery vulnerability exists in HPE StoreOnce Software.
- risk 0.64cvss 9.8epss 0.01
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
- risk 0.49cvss 7.5epss 0.01
A potential security vulnerability has been identified in HPE StoreOnce Software. The SSH server supports weak key exchange algorithms which could lead to remote unauthorized access. HPE has made the following software update to resolve the vulnerability in HPE StoreOnce…
- risk 0.47cvss 7.2epss 0.01
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
- risk 0.42cvss 6.5epss 0.01
A potential DOM-based Cross Site Scripting security vulnerability has been identified in HPE StoreOnce. The vulnerability could be remotely exploited to cause an elevation of privilege leading to partial impact to confidentiality, availability, and integrity. HPE has made the…
- risk 0.36cvss 5.5epss 0.01
A directory traversal arbitrary file deletion vulnerability exists in HPE StoreOnce Software.