CVE-2013-2367: Critical severity HP SiteScope vulnerability
Published Jul 31, 2013
·Updated
Multiple unspecified vulnerabilities in HP SiteScope 11.20 and 11.21, when SOAP is used, allow remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1678.
Affected Software
2 affected components
HP SiteScope=11.20
HP SiteScope=11.21
Event History
Jul 31, 2013
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-2367?
CVE-2013-2367 is considered critical due to the potential for remote code execution.
2
How do I fix CVE-2013-2367?
To mitigate CVE-2013-2367, upgrade to the latest version of HP SiteScope that includes patches for these vulnerabilities.
3
What versions of HP SiteScope are affected by CVE-2013-2367?
CVE-2013-2367 affects HP SiteScope versions 11.20 and 11.21.
4
Can CVE-2013-2367 be exploited remotely?
Yes, CVE-2013-2367 can be exploited by remote attackers using SOAP.
5
What action should I take if I am using an affected version of HP SiteScope?
If using an affected version of HP SiteScope, it is crucial to update to a fixed version immediately to prevent exploitation.