News and Notes from the Makers of Nexus | Sonatype Blog

Nine Zero-Days: HP in the Security Dock Again

Written by Ali Loney | September 05, 2012

The H – (International) Nine 0days: HP in the security dock again. The Zero Day Initiative published information about unpatched critical security holes in HP's enterprise products: The zero-day holes all allow remote attackers to inject and execute arbitrary code into the server systems. Eight of the nine holes are rated at the highest risk level (Common Vulnerability Scoring System) of 10. Before the disclosure of the vulnerability details, HP had up to a year to close the nine critical security holes.