Vulnerabilities > HP > High

DATE CVE VULNERABILITY TITLE RISK
2013-07-29 CVE-2013-4801 Remote Code Execution vulnerability in HP LoadRunner ActiveX Control
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1736.
network
low complexity
hp
7.5
2013-07-29 CVE-2013-4799 Remote Buffer Overflow vulnerability in HP LoadRunner
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1734.
network
high complexity
hp
7.6
2013-07-29 CVE-2013-4797 Remote Code Execution vulnerability in HP LoadRunner
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1690.
network
low complexity
hp
7.5
2013-07-29 CVE-2013-2370 Remote Code Execution vulnerability in HP LoadRunner
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1671.
network
low complexity
hp
7.5
2013-07-29 CVE-2013-2369 Remote Code Execution vulnerability in HP LoadRunner
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1670.
network
low complexity
hp
7.5
2013-07-22 CVE-2013-2365 Information Disclosure vulnerability in HP Database and Middleware Automation 10.0/10.01
HP Database and Middleware Automation (DMA) 10.x before 10.10, when SSL is used, allows remote attackers to obtain sensitive information via unspecified vectors.
hp
7.9
2013-07-13 CVE-2013-2351 Unauthorized Access vulnerability in HP Network Node Manager I 9.0/9.10/9.20
Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.00, 9.1x, and 9.2x allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.
network
low complexity
hp
7.5
2013-07-06 CVE-2013-2341 Security vulnerability in Multiple HP Products
Unspecified vulnerability on the HP ProCurve JC###A, JC###B, JD###A, JD###B, JE###A, JF###A, JF###B, JF###C, JG###A, 658250-B21, and 658247-B21; HP 3COM routers and switches; and HP H3C routers and switches allows remote authenticated users to execute arbitrary code or obtain sensitive information via unknown vectors.
network
high complexity
hp
7.1
2013-06-30 CVE-2013-2342 Credentials Management vulnerability in HP Storeonce D2D
The HP StoreOnce D2D backup system with software before 3.0.0 has a default password of badg3r5 for the HPSupport account, which allows remote attackers to obtain administrative access and delete data via an SSH session.
low complexity
hp CWE-255
7.7
2013-06-14 CVE-2013-3574 Improper Input Validation vulnerability in HP Insight Diagnostics 9.4.0.4710
Absolute path traversal vulnerability in hpdiags/frontend2/commands/saveCompareConfig.php in HP Insight Diagnostics 9.4.0.4710 allows remote attackers to write data to arbitrary files via a full pathname in the argument to the devicePath (aka mount) parameter.
network
low complexity
hp CWE-20
7.8