Directory traversal vulnerability in goform/formExportDataLogs in HP Power Manager prior to 4.2.10 allows remote malicious users to overwrite arbitrary files, and execute arbitrary code, via directory traversal sequences in the fileName parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
hp power manager |
||
hp power manager 4.2.6 |
||
hp power manager 4.2.5 |
||
hp power manager 4.2.7 |
||
hp power manager 4.2.8 |