KLA10188
Multiple vulnerabilities in HP Insight Diagnostics
Обновлено: 17/06/2019
Дата обнаружения
14/06/2013
Уровень угрозы
Critical
Описание

Multiple critical vulnerabilities have been found in HP Insight Diagnostics. Malicious users can exploit these vulnerabilities to inject code or write local files. Below is a complete list of vulnerabilities

  1. Improper PHP include restrictions can be exploited via a path parameter;
  2. A path traversal vulnerability can be exploited remotely via a devicePath parameter;
  3. Unknown vectors can be exploited remotely.
Пораженные продукты

HP Insight Diagnostics version 9.4.0.4710

Решение

Update to latest version

Оказываемое влияние
?
CI 
[?]

WLF 
[?]
Связанные продукты
HP Insight Diagnostics
CVE-IDS
CVE-2013-357310.0Critical
CVE-2013-35747.8Critical
CVE-2013-35755.0Critical