PT-2013-5209 · Hewlett Packard+1 · Hp Multiple Products+3

Rgod

·

Published

2013-09-11

·

Updated

2025-02-12

·

CVE-2013-4810

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HP Multiple Products versions (affected versions not specified) HP PCM+ and Application Lifecycle Management (affected versions not specified)
Description The issue allows for remote code execution. It involves the JBoss Invoker Servlets and marshalled object deserialization.
Recommendations For HP Multiple Products, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For HP PCM+ and Application Lifecycle Management, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2013-4810
ZDI-13-229

Affected Products

Hp Application Lifecycle Management
Hp Multiple Products
Hp Pcm+
Jboss Invoker Servlets