VulnerabilityModified
CVE-2011-0272
Unspecified vulnerability in HP LoadRunner 9.52 allows remote attackers to execute arbitrary code via network traffic to TCP port 5001 or 5002, related to the HttpTunnel feature.
HIGH 10.0EPSS 13.4%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 13.4%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
Unspecified vulnerability in HP LoadRunner 9.52 allows remote attackers to execute arbitrary code via network traffic to TCP port 5001 or 5002, related to the HttpTunnel feature.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 13.44% probability · 96th percentile
- CISA KEV
- Not listed
- Affected
- hp/loadrunner
- Source
- hp-security-alert@hp.com
References
- http://osvdb.org/70432
- http://secunia.com/advisories/42898Vendor Advisory
- http://securitytracker.com/id?1024956
- http://www.securityfocus.com/archive/1/515682
- http://www.securityfocus.com/bid/45792
- http://www.vupen.com/english/advisories/2011/0095Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64659
- http://osvdb.org/70432
- http://secunia.com/advisories/42898Vendor Advisory
- http://securitytracker.com/id?1024956
- http://www.securityfocus.com/archive/1/515682
- http://www.securityfocus.com/bid/45792
- http://www.vupen.com/english/advisories/2011/0095Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64659
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.