HP Service Virtualization是美国惠普(HP)公司的一套应用生命周期管理(ALM)解决方案。该方案可借助虚拟化服务更快的开发和测试应用,并能够消除开发及测试中产生的延迟。 HP Service Virtualization 3.50.1之前的3.x版本中的CommunicationServlet存在目录遍历漏洞。程序启用AutoPass许可证服务器时,远程攻击者可利用该漏洞创建任意文件,进而执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2014-1650 | Symantec Web Gateway SQL注入漏洞 | |
| CVE-2014-3012 | IBM Curam Social Program Management CRLF注入漏洞 | |
| CVE-2014-3013 | IBM Curam Social Program Management 跨站脚本漏洞 | |
| CVE-2014-4020 | Wireshark ‘dissect_frame’函数数字错误漏洞 | |
| CVE-2014-4174 | Wireshark 安全漏洞 | |
| CVE-2014-0598 | Novell Open Enterprise Server 目录遍历漏洞 | |
| CVE-2014-0599 | Novell Open Enterprise Server 跨站脚本漏洞 | |
| CVE-2013-5017 | Symantec Web Gateway 远程命令注入漏洞 | |
| CVE-2012-2592 | Axigen Messaging Axigen Mail Server 跨站脚本漏洞 | |
| CVE-2014-2949 | F5 ARX Data Manager SQL注入漏洞 | |
| CVE-2014-1651 | Symantec Web Gateway SQL注入漏洞 | |
| CVE-2014-1652 | Symantec Web Gateway 跨站脚本漏洞 | |
| CVE-2014-4021 | Xen 信息泄露漏洞 | |
| CVE-2014-4049 | PHP 基于堆的缓冲区错误漏洞 | |
| CVE-2014-4151 | AlienVault OSSIM 安全漏洞 | |
| CVE-2014-4152 | AlienVault OSSIM 安全漏洞 | |
| CVE-2014-4153 | AlienVault OSSIM 安全漏洞 | |
| CVE-2011-2592 | Citrix Access Gateway Enterprise Edition Plug-in for Windows 基于堆的缓冲区溢出漏洞 | |
| CVE-2014-2779 | Microsoft Malware Protection Engine 安全漏洞 | |
| CVE-2014-2151 | Cisco Adaptive Security Appliances 安全漏洞 |
Showing top 20 of 34 CVEs. View all on vendor page → →
No comments yet