CVE-2024-28893

Certain HP software packages (SoftPaqs) are potentially vulnerable to arbitrary code execution when the SoftPaq configuration file has been modified after extraction. HP has released updated software packages (SoftPaqs).
Configurations

No configuration.

History

27 Mar 2025, 15:15

Type Values Removed Values Added
CWE CWE-94

21 Nov 2024, 09:07

Type Values Removed Values Added
References () https://support.hp.com/us-en/document/ish_10502451-10502508-16/hpsbhf03931 - () https://support.hp.com/us-en/document/ish_10502451-10502508-16/hpsbhf03931 -

03 Jul 2024, 01:51

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.7
Summary
  • (es) Ciertos paquetes de software de HP (SoftPaqs) son potencialmente vulnerables a la ejecución de código arbitrario cuando el archivo de configuración del SoftPaq se modifica después de la extracción. HP ha lanzado paquetes de software actualizados (SoftPaqs).

01 May 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-01 16:15

Updated : 2025-03-27 15:15


NVD link : CVE-2024-28893

Mitre link : CVE-2024-28893

CVE.ORG link : CVE-2024-28893


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')