10
CVSSv2

CVE-2012-2561

Published: 21/05/2012 Updated: 25/05/2013
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

HP Business Service Management (BSM) 9.12 does not properly restrict the uploading of .war files, which allows remote malicious users to execute arbitrary JSP code within the JBOSS Application Server component via a crafted request to TCP port 1098, 1099, or 4444.

Vulnerable Product Search on Vulmon Subscribe to Product

hp business service management 9.12