7.5
CVSSv2

CVE-2011-4162

Published: 05/12/2011 Updated: 29/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The (1) AddUser, (2) AddUserEx, (3) RemoveUser, (4) RemoveUserByGuide, (5) RemoveUserEx, and (6) RemoveUserRegardless methods in HP Protect Tools Device Access Manager (PTDAM) prior to 6.1.0.1 allow remote malicious users to execute arbitrary code or cause a denial of service (heap memory corruption) via a long SidString argument.

Vulnerable Product Search on Vulmon Subscribe to Product

hp protecttools device access manager 6.0.0.9

hp protecttools device access manager

hp protecttools device access manager 6.0.0.10

Exploits

source: wwwsecurityfocuscom/bid/50895/info HP Device Access Manager for HP ProtectTools is prone to a remote heap-memory-corruption vulnerability An attacker can exploit this issue to execute arbitrary code within the context of the affected application Failed exploit attempts will result in a denial-of-service condition HP Device Ac ...