CVE-2011-4157
high · 10Stack-based buffer overflow in hydra.exe in HP SAN/iQ before 9.5 on the HP StorageWorks P4000 Virtual SAN Appliance allows remote attackers to execute arbitrary code via a crafted login request.
10
CVSS
13.2%
EPSS (exploit prob.)
96th
EPSS percentile
2011-11-16
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| hp | centralized_management_console_software | <= 9.0 |
| hp | centralized_management_console_software | 7.0.01 |
| hp | centralized_management_console_software | 8.0 |
| hp | centralized_management_console_software | 8.1 |
| hp | centralized_management_console_software | 8.5 |
| hp | san/iq | <= 9.0 |
| hp | san/iq | 8.0 |
| hp | san/iq | 8.1 |
| hp | san/iq | 8.5 |
| hp | storageworks_p4000_virtual_san_appliance | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03082086
- http://www.securityfocus.com/bid/47005
- http://www.securityfocus.com/bid/51042
- http://www.zerodayinitiative.com/advisories/ZDI-11-111/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/71766
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03082086
- http://www.securityfocus.com/bid/47005
- http://www.securityfocus.com/bid/51042
- http://www.zerodayinitiative.com/advisories/ZDI-11-111/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/71766
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2011-4157