ZeroHour

CVE-2020-24626

CVSS 3.1
9.8 critical
EPSS
3%p87
Published
()
Modified
Description

Unathenticated directory traversal in the ReceiverServlet class doPost() method can lead to arbitrary remote code execution in HPE Pay Per Use (PPU) Utility Computing Service (UCS) Meter version 1.9.

Vendors
hpe
Products
utility computing service meter
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.