PT-2013-5197 · Hewlett Packard · Loadrunner

Publicado

2013-07-26

·

Atualizado

2017-08-29

·

CVE-2013-4797

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions HP LoadRunner versions prior to 11.52
Description The issue allows remote attackers to execute arbitrary code. The vulnerability is related to the LrWebIEBrowserMgr.dll ActiveX Control, specifically the FlushSnapshotToFile function.
Recommendations For versions prior to 11.52, update to version 11.52 or later to resolve the issue. As a temporary workaround, consider disabling the LrWebIEBrowserMgr.dll ActiveX Control until a patch is available. Restrict access to the FlushSnapshotToFile function to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2013-4797
ZDI-13-206

Produtos afetados

Loadrunner