PT-2012-1960 · Hewlett Packard · Hp Loadrunner
Abdulaziz Hariri
·
Publicado
2012-01-12
·
Atualizado
2012-11-28
·
CVE-2011-4789
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
HP LoadRunner versions prior to 11.00 patch 4
Description
The issue is a stack-based buffer overflow in the magentservice.exe service, allowing remote attackers to execute arbitrary code via a crafted size value in a packet.
Recommendations
For HP LoadRunner versions prior to 11.00 patch 4, apply patch 4 to resolve the issue. As a temporary workaround, consider restricting access to the magentservice.exe service to minimize the risk of exploitation.
Exploit
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Hp Loadrunner