Vulnerability Details CVE-2013-4836
Unspecified vulnerability in the GossipService SOAP Request implementation in the Synchronizer component before 1.4.2 in HP Application LifeCycle Management (ALM) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1759.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.055
EPSS Ranking 89.8%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2013-4836
-
cpe:2.3:a:hp:alm_synchronizer:1.10
-
cpe:2.3:a:hp:alm_synchronizer:1.20
-
cpe:2.3:a:hp:alm_synchronizer:1.30
-
cpe:2.3:a:hp:alm_synchronizer:1.40
-
cpe:2.3:a:hp:alm_synchronizer:1.41
-
cpe:2.3:a:hp:application_lifecycle_management:-