#VU101115 Code Injection in AutoPass License Server - CVE-2024-51768
Published: December 3, 2024
AutoPass License Server
Hewlett Packard Enterprise
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to usage of vulnerable third party component within the hsqldb service. A remote user on the local network can execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.