CVE-2017-10992: HP Storage Essentials
Critical severity, CVSS 9.8. EPSS: 10.5% chance of exploitation in the next 30 days.
In HPE Storage Essentials 9.5.0.142, there is Unauthenticated Java Deserialization with remote code execution via OS commands in a request to invoker/JMXInvokerServlet, aka PSRT110461.
Affected products
- HP Storage Essentials: version 9.5.0.142 only
Published 2020-03-10. Last modified 2026-06-17.