CVE-2024-51768

An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hpe:autopass_license_server:*:*:*:*:*:*:*:*

History

25 Jul 2025, 15:44

Type Values Removed Values Added
References () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbgn04760en_us - () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbgn04760en_us - Vendor Advisory
Summary
  • (es) Existe una vulnerabilidad de ejecución de código remoto relacionada con hsqldb en HPE AutoPass License Server (APLS) anterior a la versión 9.17.
CPE cpe:2.3:a:hpe:autopass_license_server:*:*:*:*:*:*:*:*
First Time Hpe
Hpe autopass License Server

14 Jul 2025, 14:15

Type Values Removed Values Added
CWE CWE-94
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.0

14 Jul 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-14 11:15

Updated : 2025-07-25 15:44


NVD link : CVE-2024-51768

Mitre link : CVE-2024-51768

CVE.ORG link : CVE-2024-51768


JSON object : View

Products Affected

hpe

  • autopass_license_server
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')