Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2gv9-8fwv-h6jx

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

HP OpenView Performance Insight Server 5.2, 5.3, 5.31, 5.4, and 5.41 contains a "hidden account" in the com.trinagy.security.XMLUserManager Java class, which allows remote attackers to execute arbitrary code via the doPost method in the com.trinagy.servlet.HelpManagerServlet class.

HP OpenView Performance Insight Server 5.2, 5.3, 5.31, 5.4, and 5.41 contains a "hidden account" in the com.trinagy.security.XMLUserManager Java class, which allows remote attackers to execute arbitrary code via the doPost method in the com.trinagy.servlet.HelpManagerServlet class.

EPSS

Процентиль: 99%
0.84327
Высокий

Связанные уязвимости

nvd
около 15 лет назад

HP OpenView Performance Insight Server 5.2, 5.3, 5.31, 5.4, and 5.41 contains a "hidden account" in the com.trinagy.security.XMLUserManager Java class, which allows remote attackers to execute arbitrary code via the doPost method in the com.trinagy.servlet.HelpManagerServlet class.

EPSS

Процентиль: 99%
0.84327
Высокий