Back to Database
Status published
Medium
CVE-2024-54009
Remote authentication bypass vulnerability in HPE Alletra Storage MP B10000...
Vulnerability Description
Remote authentication bypass vulnerability in HPE Alletra Storage MP B10000 in versions prior to version 10.4.5 could be remotely exploited to allow disclosure of information.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-54009
Credits & Attribution
No credits recorded in the NVD database.
More from Hewlett Packard Enterprise (HPE)
View All →CVE-2025-37186
Local Privilege Escalation Vulnerability in HPE Aruba Networking Virtual Intranet Access (VIA) Client for Linux
High
7.8
CVE-2025-37185
Authenticated Stored Cross-Site Scripting Vulnerabilities (XSS) in EdgeConnect SD-WAN Orchestrator Web Administration Interface
Medium
5.5
CVE-2025-37184
Unauthenticated Bypass Allows Multi-Factor Authentication Circumvention
Critical
9.8
CVE-2025-37183
Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interface
High
7.2
CVE-2025-37182
Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interface
High
7.2
Affected Vendor
Hewlett Packard Enterprise (HPE)
View all reports →Affected Software
HPE Alletra Storage MP B10000
Vulnerable Versions:
0
Timeline
Official Publish:
December 19th, 2024
Last Modified:
December 20th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N