Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Hewlet Pacord Enterprise warns of Critical Storenus Aath Bypass
    Security

    Hewlet Pacord Enterprise warns of Critical Storenus Aath Bypass

    PineapplesUpdateBy PineapplesUpdateJune 4, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Hewlet Pacord Enterprise warns of Critical Storenus Aath Bypass
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Hewlet Pacord Enterprise warns of Critical Storenus Aath Bypass

    The Hewlet Pacord Enterprise (HPE) has released a security bulletin, which is to warns about the eight weaknesses affecting the Startons, its disc-based backup and the Diduplication solution.

    among This time the flaws were fixed There is a significant severity (CVSS V3.1 Score: 9.8) Certified under certification bypass vulnerability Cve-2025-37093Three remote code execution bugs, two directors traversal problems, and a server-side request problem.

    Flaws V4.3.3.11 affects all versions of the HPE Storeonce software, which is now the recommended upgrade version.

    Here is a complete list of eight weaknesses fixed in version 4.3.11:

    • Cve-2025-37089 – Distance Code Performance
    • Cve-2025-37090 -Servar-side request forgery
    • Cve-2025-37091 – Distance Code Performance
    • Cve-2025-37092 – Distance Code Performance
    • Cve-2025-37093 – Certification bypass
    • Cve-2025-37094 – Directory Traversal Arbitrary File Eradication
    • Cve-2025-37095 – Directory Traversal Information Disclosure
    • Cve-2025-37096 – Distance Code Performance

    This time several details about the flaws were not disclosed.

    However, zero day initiative (ZDi), which discovered them, Mention This is present within the implementation of the CVE-2025-37093 Machineaccountcheck method, resulting in improper implementation of a certification algorithm.

    Although the CVE-2025-37093 is only evaluated as importantness, others still take significant risks, even though they are usually less classified in severity ratings.

    The ZDi states that the authentication bypass problem is the key to unlocking capacity in all other flaws, so their risk is no different.

    CVE-2025-3794 and CVE-2025-37095, examples of two medium-seriousness file deletion and information disclosure defects suggest that whatever is reflected in the score is easier than what is reflected in the score.

    “This vulnerability allows remote attackers to disclose sensitive information on the affected establishments of Hewlet Pacord Enterprise Storage VSA,” ZDi explains,

    “Although taking advantage of this vulnerability requires authentication, the existing authentication mechanism can be bypassed.”

    In particular, flaws were discovered and informed to HPE in October 2024, with the passage of seven months until the fixes finally became available to the customers. Nevertheless, there is no report of active exploitation.

    HPE Storeonce is usually used for backup and recovery in organizations that handle large enterprises, data centers, cloud service providers and generally, large data or large virtuous environment.

    Storeonce HPE integrates with backup software such as data protector, veeam, commvault, and Veritas Netbackup, ensuring business continuity and effective backup management.

    It is said, administrators of the potentially affected environment should take immediate action and implement the security update available to close the gaps.

    HPE has not listed any mitigation or work -round for eight flaws in the bulletin, so upgrading is a recommended solution.


    Tines needle

    Manual patching is old. It is slow, error-prone and hard for scale.

    On June 4, join Kandji + Tines, to see why the older methods are short. See the real -world examples of how modern teams use automation to patch rapid patching, risk cuts, obedient stay and leaving complex scripts.

    Aath bypass Critical enterprise Hewlet Pacord Storenus warns
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleCEO of Dale tells us how AI can make us “more effective as a species”
    Next Article One of the most successful founders of Africa is back with a new AI startup and has already raised $ 9m
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    How a simple link allowed hackers to bypass Copilot’s security guardrails – and what Microsoft did about it

    January 19, 2026
    Startups

    SUSE Enterprise Linux 16 is here, and its key feature is digital sovereignty

    November 4, 2025
    Startups

    AI is becoming introspective – and should be ‘carefully monitored,’ Anthropic warns

    November 3, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2026 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.