CVE-2012-4361

EUVD-2012-4304
lhn/public/network/ping in HP SAN/iQ before 9.5 on the HP Virtual SAN Appliance allows remote authenticated users to execute arbitrary commands via shell metacharacters in the second parameter.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.7 UNKNOWN
ADJACENT_NETWORK
LOW
AV:A/AC:L/Au:S/C:C/I:C/A:C