10
CVSSv2

CVE-2014-2609

Published: 19/06/2014 Updated: 26/06/2014
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Java Glassfish Admin Console in HP Executive Scorecard 9.40 and 9.41 does not require authentication, which allows remote malicious users to execute arbitrary code via a session on TCP port 10001, aka ZDI-CAN-2116.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hp executive scorecard 9.40

hp executive scorecard 9.41