Vulnerabilities > HP > Sitescope > 11.01

DATE CVE VULNERABILITY TITLE RISK
2013-11-04 CVE-2013-4835 Unspecified vulnerability in HP Sitescope
The APISiteScopeImpl SOAP service in HP SiteScope 10.1x and 11.x before 11.22 allows remote attackers to bypass authentication and execute arbitrary code via a direct request to the issueSiebelCmd method, aka ZDI-CAN-1765.
network
low complexity
hp
7.5
2011-07-29 CVE-2011-2401 Session Fixation vulnerability in HP SiteScope
Session fixation vulnerability in HP SiteScope 9.x, 10.x, and 11.x allows remote attackers to hijack web sessions via unspecified vectors.
network
hp
8.3
2011-07-29 CVE-2011-2400 Cross-Site Scripting vulnerability in HP Sitescope
Cross-site scripting (XSS) vulnerability in HP SiteScope 9.x, 10.x, and 11.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hp CWE-79
4.3
2011-05-03 CVE-2011-1727 Cross-Site Scripting vulnerability in HP Sitescope
Cross-site scripting (XSS) vulnerability in HP SiteScope 9.54, 10.13, 11.01, and 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to an "HTML injection" issue.
network
hp CWE-79
4.3
2011-05-03 CVE-2011-1726 Cross-Site Scripting vulnerability in HP Sitescope
Cross-site scripting (XSS) vulnerability in HP SiteScope 9.54, 10.13, 11.01, and 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hp CWE-79
4.3