Vulnerabilities > HP > High

DATE CVE VULNERABILITY TITLE RISK
2014-03-29 CVE-2013-6211 Remote Unauthorized Access vulnerability in HP StoreOnce Appliances
Unspecified vulnerability in HP StoreOnce Virtual Storage Appliance (VSA) before 3.7.2, StoreOnce 26xx and 4210 iSCSI Backup System before 3.9.0, StoreOnce 4210 FC Backup System before 3.9.0, and StoreOnce 4xxx Backup System before 3.9.0 allows remote attackers to obtain sensitive information or cause a denial of service via unknown vectors.
network
hp
7.8
2014-03-16 CVE-2013-6210 Remote Code Execution vulnerability in HP Unified Functional Testing 11.0/11.5
Unspecified vulnerability in HP Unified Functional Testing before 12.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1932.
network
low complexity
hp
7.5
2014-03-16 CVE-2013-6208 Local Privilege Escalation vulnerability in HP Smart Update Manager 5.3.5
Unspecified vulnerability in HP Smart Update Manager 5.3.5 before build 70 on Linux allows local users to gain privileges via unknown vectors.
local
low complexity
hp linux
7.2
2014-03-06 CVE-2013-6201 Remote Code Execution vulnerability in HP Security Management System
Unspecified vulnerability in HP Security Management System 3.3.0, 3.5.0 before patch 1, and 3.6.0 before patch 2 allows remote attackers to execute arbitrary code via unknown vectors.
network
low complexity
hp
7.5
2014-02-26 CVE-2013-6204 Remote Code Execution vulnerability in HP Application Information Optimizer
The Web Console in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6.4, 7.0, and 7.1 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, aka ZDI-CAN-2004.
network
low complexity
hp
7.5
2014-02-26 CVE-2013-6203 Remote Code Execution vulnerability in HP Application Information Optimizer
The Web Console in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6.4, 7.0, and 7.1 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, aka ZDI-CAN-1656.
network
low complexity
hp
7.5
2013-11-29 CVE-2013-4844 Remote Code Execution vulnerability in HP Service Manager and ServiceCenter
Unspecified vulnerability in HP Service Manager 7.11, 9.21, 9.30, 9.31, and 9.32, and ServiceCenter 6.2.8, allows remote attackers to execute arbitrary code via unknown vectors.
network
low complexity
hp
7.5
2013-11-04 CVE-2013-4839 Remote Code Execution vulnerability in HP LoadRunner Virtual User Generator
Unspecified vulnerability in Virtual User Generator in HP LoadRunner before 11.52 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1851.
network
low complexity
hp
7.5
2013-11-04 CVE-2013-4836 Remote Code Execution vulnerability in Application Lifecycle Management Synchronizer
Unspecified vulnerability in the GossipService SOAP Request implementation in the Synchronizer component before 1.4.2 in HP Application LifeCycle Management (ALM) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1759.
network
low complexity
hp
7.5
2013-11-04 CVE-2013-4835 Unspecified vulnerability in HP Sitescope
The APISiteScopeImpl SOAP service in HP SiteScope 10.1x and 11.x before 11.22 allows remote attackers to bypass authentication and execute arbitrary code via a direct request to the issueSiebelCmd method, aka ZDI-CAN-1765.
network
low complexity
hp
7.5