HPE Alert
2612Warning Date
Severity Level
Warning Number
Target Sector
17 May, 2022
● Medium
2022-4843
All
HPE has released a security update to address several vulnerabilities in the following products:
- HPE OneView
- Prior to 7.0
- HPE ProLiant DL385 Gen10 Server
- Prior to v2.56
- HPE ProLiant DL325 Gen10 Server
- Prior to v2.56
- HPE ProLiant DL385 Gen10 Plus server
- Prior to v2.56
- HPE ProLiant DL325 Gen10 Plus server
- Prior to v2.56
An attacker could exploit these vulnerabilities by doing the following:
- Denial of service attack (DoS)
- Cross-site scripting (XSS)
- Server-side request forgery (SSRF)
The CERT team encourages users to review HPE security advisory and apply the necessary updates: