HP OpenView Performance Insight Server Backdoor Account Code Execution
Publish Date: 21 Juli 2015
Schweregrad:: Kritisch
Hinweisdatum: 21 Juli 2015
Beschreibung
HP OpenView Performance Insight Server 5.2, 5.3, 5.31, 5.4, and 5.41 contains a "hidden account" in the com.trinagy.security.XMLUserManager Java class, which allows remote attackers to execute arbitrary code via the doPost method.
Trend Micro Lösungen
Apply associated Trend Micro DPI Rules.
Lösungen
Trend Micro Deep Security DPI Rule Number: 1005987