Vulnerabilities > HP > Sitescope

DATE CVE VULNERABILITY TITLE RISK
2013-11-04 CVE-2013-4835 Unspecified vulnerability in HP Sitescope
The APISiteScopeImpl SOAP service in HP SiteScope 10.1x and 11.x before 11.22 allows remote attackers to bypass authentication and execute arbitrary code via a direct request to the issueSiebelCmd method, aka ZDI-CAN-1765.
network
low complexity
hp
7.5
2013-07-31 CVE-2013-2367 Remote Code Execution vulnerability in HP Sitescope 11.20/11.21
Multiple unspecified vulnerabilities in HP SiteScope 11.20 and 11.21, when SOAP is used, allow remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1678.
network
low complexity
hp
critical
10.0
2012-09-25 CVE-2012-3264 Unspecified vulnerability in HP Sitescope 11.10/11.11/11.12
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1472.
network
low complexity
hp
7.5
2012-09-25 CVE-2012-3263 Unspecified vulnerability in HP Sitescope 11.10/11.11/11.12
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1465.
network
low complexity
hp
critical
10.0
2012-09-25 CVE-2012-3262 Unspecified vulnerability in HP Sitescope 11.10/11.11/11.12
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1464.
network
low complexity
hp
critical
10.0
2012-09-25 CVE-2012-3261 Unspecified vulnerability in HP Sitescope 11.10/11.11/11.12
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1463.
network
low complexity
hp
critical
10.0
2012-09-25 CVE-2012-3260 Unspecified vulnerability in HP Sitescope 11.10/11.11/11.12
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1462.
network
low complexity
hp
critical
10.0
2012-09-25 CVE-2012-3259 Unspecified vulnerability in HP Sitescope 11.10/11.11/11.12
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1461.
network
low complexity
hp
critical
10.0
2011-07-29 CVE-2011-2401 Session Fixation vulnerability in HP SiteScope
Session fixation vulnerability in HP SiteScope 9.x, 10.x, and 11.x allows remote attackers to hijack web sessions via unspecified vectors.
network
hp
8.3
2011-07-29 CVE-2011-2400 Cross-Site Scripting vulnerability in HP Sitescope
Cross-site scripting (XSS) vulnerability in HP SiteScope 9.x, 10.x, and 11.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hp CWE-79
4.3