CVE Vulnerabilities

CVE-2011-0276

Published: Feb 02, 2011 | Modified: Oct 10, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

HP OpenView Performance Insight Server 5.2, 5.3, 5.31, 5.4, and 5.41 contains a hidden account in the com.trinagy.security.XMLUserManager Java class, which allows remote attackers to execute arbitrary code via the doPost method in the com.trinagy.servlet.HelpManagerServlet class.

Affected Software

Name Vendor Start Version End Version
Openview_performance_insight Hp 5.2 (including) 5.2 (including)
Openview_performance_insight Hp 5.3 (including) 5.3 (including)
Openview_performance_insight Hp 5.4 (including) 5.4 (including)
Openview_performance_insight Hp 5.31 (including) 5.31 (including)
Openview_performance_insight Hp 5.41 (including) 5.41 (including)

References