漏洞描述 Hewlett Packard Enterprise AOS(HPE AOS)是美国慧与(Hewlett Packard Enterprise)公司的一款用于数据中心、园区和边缘的网络操作系统。 Hewlett Packard Enterprise AOS存在操作系统命令注入漏洞,该漏洞源于系统二进制文件存在漏洞,允许认证远程攻击者通过CLI注入命令到底层操作系统,可能导致系统完全被接管。
相关漏洞推荐 TRUfusion Enterprise 认证绕过漏洞(CVE-2025-27223) TRUfusion Enterprise 目录遍历漏洞(CVE-2025-27222) TRUfusion Enterprise 未授权访问漏洞(CVE-2025-27225) 安科瑞-GetEnterpriseInfoMapHM-SQL注入 Kingdee Cloud-Starry-Sky Enterprise Edition 路径遍历漏洞 POC CVE-2024-9487: GitHub Enterprise - SAML Authentication Bypass POC CVE-2010-1429: Red Hat JBoss Enterprise Application Platform - Sensitive Information Disclosure POC CVE-2018-19753: Tarantella Enterprise <3.11 - Local File Inclusion POC CVE-2019-14974: SugarCRM Enterprise 9.0.0 - Cross-Site Scripting POC CVE-2019-6793: GitLab Enterprise Edition - Server-Side Request Forgery POC CVE-2019-7275: Optergy Proton/Enterprise Building Management System - Open Redirect POC CVE-2020-25864: HashiCorp Consul/Consul Enterprise <=1.9.4 - Cross-Site Scripting POC CVE-2020-2733: JD Edwards EnterpriseOne Tools 9.2 - Information Disclosure