A potential security vulnerability has been identified in the HPE StoreEver MSL2024 Tape Library and HPE StoreEver 1/8 G2 Tape Autoloaders. The vulnerability could be remotely exploited to allow Cross-site Request Forgery (CSRF).
References
Link | Resource |
---|---|
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04075en_us | Vendor Advisory |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04075en_us | Vendor Advisory |
Configurations
History
21 Nov 2024, 05:36
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04075en_us - Vendor Advisory |
Information
Published : 2020-12-18 23:15
Updated : 2024-11-21 05:36
NVD link : CVE-2020-7201
Mitre link : CVE-2020-7201
CVE.ORG link : CVE-2020-7201
JSON object : View
Products Affected
hp
- storeever_1\/8_g2_tape_autoloader_firmware
- storeever_msl2024_firmware
- storeever_1\/8_g2_tape_autoloader
- storeever_msl2024
CWE
CWE-352
Cross-Site Request Forgery (CSRF)