HP Multiple Products Remote Code Execution Vulnerability
Vendor: Hewlett Packard (HP)
Product: ProCurve Manager (PCM), PCM+, Identity Driven Manager (IDM), and Application Lifecycle Management
Added: 2022-03-25
Due Date: 2022-04-15
Description:
HP ProCurve Manager (PCM), PCM+, Identity Driven Manager (IDM), and Application Lifecycle Management allow remote attackers to execute arbitrary code via a marshalled object to (1) EJBInvokerServlet or (2) JMXInvokerServlet.
Required Action:
Apply updates per vendor instructions.
CWEs: