7.5
CVE-2013-4836
- EPSS 5.52%
- Veröffentlicht 04.11.2013 16:55:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle hp-security-alert@hp.com
- CVE-Watchlists
- Unerledigt
Unspecified vulnerability in the GossipService SOAP Request implementation in the Synchronizer component before 1.4.2 in HP Application LifeCycle Management (ALM) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1759.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hp ≫ Alm Synchronizer Version <= 1.41
Hp ≫ Alm Synchronizer Version1.10
Hp ≫ Alm Synchronizer Version1.20
Hp ≫ Alm Synchronizer Version1.30
Hp ≫ Alm Synchronizer Version1.40
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.52% | 0.898 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|