Blog | G5 Cyber Security

HP Device Manager CVE-2020-6925, CVE-2020-6926, CVE-2020-6927

HP Device Manager vulnerabilities can lead to unauthenticated remote command execution with SYSTEM privileges. The official advisory and mitigation advice from HP can be found here. PoC exploit can be downloaded from the Internet and downloaded free (free account registration required) The exploit is based on an open TCP port 1099, the default port for a Java Remote Method Invocation (RMI) service registry. The RMI protocol seems to be commonly found in enterprise systems and security of the protocol and applications using it often relies on obscurity.”]

Source: https://nickbloor.co.uk/2020/10/05/hp-device-manager-cve-2020-6925-cve-2020-6926-cve-2020-6927/

Exit mobile version