#VU109850 Improper Neutralization of Special Elements in Output Used by a Downstream Component in Superdome Flex Server and Superdome Flex 280 Server - CVE-2022-37933
Published: May 27, 2025
Superdome Flex Server
Superdome Flex 280 Server
HPE
Description
The vulnerability allows a local user to execute arbitrary code on the target system.
The vulnerability exists due to a improper neutralization of special elements in output used by a downstream component. A local user can trigger the vulnerability to execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.