CVE-2016-8511

CRITICAL

HPE Network Automation - RCE

Title source: llm

Description

A Remote Code Execution vulnerability in HPE Network Automation using RPCServlet and Java Deserialization version v9.1x, v9.2x, v10.00, v10.00.01, v10.00.02, v10.10, v10.11, v10.11.01, v10.20 was found.

Scores

CVSS v3 9.8
EPSS 0.1840
EPSS Percentile 95.1%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-502
Status published

Affected Products (12)

hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation
hp/network_automation

Timeline

Published Feb 15, 2018
Tracked Since Feb 18, 2026