cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2013-4809,https://securityvulnerability.io/vulnerability/CVE-2013-4809,,"Multiple SQL injection vulnerabilities in GetEventsServlet in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (IDM) 4.0 allow remote attackers to execute arbitrary SQL commands via the (1) sort or (2) dir parameter.",HP,"Procurve Manager,Identity Driven Manager",,,0.009359999559819698,false,,false,false,false,,,false,false,,2013-09-16T13:01:00.000Z,0 CVE-2013-4813,https://securityvulnerability.io/vulnerability/CVE-2013-4813,,"The Agent (aka AgentController) servlet in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (IDM) 4.0 allows remote attackers to execute arbitrary commands via a HEAD request, aka ZDI-CAN-1745.",HP,"Procurve Manager,Identity Driven Manager",,,0.0841199979186058,false,,false,false,false,,,false,false,,2013-09-16T13:01:00.000Z,0 CVE-2013-4812,https://securityvulnerability.io/vulnerability/CVE-2013-4812,,"UpdateCertificatesServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (IDM) 4.0 does not properly validate the fileName argument, which allows remote attackers to upload .jsp files and consequently execute arbitrary code via unspecified vectors, aka ZDI-CAN-1743.",HP,"Procurve Manager,Identity Driven Manager",,,0.9677299857139587,false,,false,false,false,,,false,false,,2013-09-16T13:01:00.000Z,0 CVE-2013-4810,https://securityvulnerability.io/vulnerability/CVE-2013-4810,,"HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, Identity Driven Manager (IDM) 4.0, and Application Lifecycle Management allow remote attackers to execute arbitrary code via a marshalled object to (1) EJBInvokerServlet or (2) JMXInvokerServlet, aka ZDI-CAN-1760. NOTE: this is probably a duplicate of CVE-2007-1036, CVE-2010-0738, and/or CVE-2012-0874.",HP,"Procurve Manager,Application Lifecycle Management,Identity Driven Manager",9.8,CRITICAL,0.7466800212860107,true,2022-03-25T00:00:00.000Z,false,false,true,2022-03-25T00:00:00.000Z,,false,false,,2013-09-16T13:01:00.000Z,0 CVE-2013-4811,https://securityvulnerability.io/vulnerability/CVE-2013-4811,,"UpdateDomainControllerServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (IDM) 4.0 does not properly validate the adCert argument, which allows remote attackers to upload .jsp files and consequently execute arbitrary code via unspecified vectors, aka ZDI-CAN-1743.",HP,"Procurve Manager,Identity Driven Manager",,,0.9677299857139587,false,,false,false,false,,,false,false,,2013-09-16T13:01:00.000Z,0 CVE-2012-0133,https://securityvulnerability.io/vulnerability/CVE-2012-0133,,"HP ProCurve 5400 zl switches with certain serial numbers include a compact flash card that contains an unspecified virus, which might allow user-assisted remote attackers to execute arbitrary code on a PC by leveraging manual transfer of this card.",HP,"Procurve Switch 5400zl Management Module,Procurve Switch 5412-96gzl,Procurve Switch Chassis E5406zl,Procurve Switch 5400zl,Procurve Switch E5406zl,Procurve Switch 5406-48gzl,Procurve Switch 5412-92g-poe\+-4sfpzl,Procurve Switch 5406zl-44g-poe\+\/4g Sfp\+ V2,Procurve Switch 5412zl-92g-poe\+\/4g Sfp\+ V2,Procurve Switch 5412zl-92gg-poe\+\/2xg Sfp\+ V2,Procurve Switch 5406-44g-poe\+-4sfpzl,Procurve Switch E5412zl,Procurve Switch Chassis E5412zl,Procurve Switch 5406zl-44g-poe\+\/2xg Sfp\+ V2",,,0.005410000216215849,false,,false,false,false,,,false,false,,2012-04-12T10:00:00.000Z,0 CVE-2009-2681,https://securityvulnerability.io/vulnerability/CVE-2009-2681,,"Unspecified vulnerability in HP ProCurve Identity Driven Manager (IDM) A.02.x through A.02.03 and A.03.x through A.03.00, on Windows Server 2003 with IAS and Windows Server 2008 with NPS, allows local users to gain privileges via unknown vectors.",HP,Procurve Identity Driven Manager,,,0.0004199999966658652,false,,false,false,false,,,false,false,,2009-09-29T18:00:00.000Z,0 CVE-2009-1424,https://securityvulnerability.io/vulnerability/CVE-2009-1424,,"Unspecified vulnerability in HP ProCurve Threat Management Services zl Module (J9155A) ST.1.0.090213 and earlier allows remote attackers to cause a denial of service via unknown vectors, aka PR_39412, a different vulnerability than CVE-2009-1423 and CVE-2009-1425.",HP,Procurve Threat Management Services Zl Module,,,0.010040000081062317,false,,false,false,false,,,false,false,,2009-07-14T20:16:00.000Z,0 CVE-2009-1422,https://securityvulnerability.io/vulnerability/CVE-2009-1422,,"Unspecified vulnerability in HP ProCurve Threat Management Services zl Module (J9155A) ST.1.0.090213 and earlier allows remote attackers to gain privileges via unknown vectors, aka PR_41209.",HP,Procurve Threat Management Services Zl Module,,,0.025439999997615814,false,,false,false,false,,,false,false,,2009-07-14T20:16:00.000Z,0 CVE-2009-1423,https://securityvulnerability.io/vulnerability/CVE-2009-1423,,"Unspecified vulnerability in HP ProCurve Threat Management Services zl Module (J9155A) ST.1.0.090213 and earlier allows remote attackers to cause a denial of service via unknown vectors, aka PR_39898, a different vulnerability than CVE-2009-1424 and CVE-2009-1425.",HP,Procurve Threat Management Services Zl Module,,,0.014770000241696835,false,,false,false,false,,,false,false,,2009-07-14T20:16:00.000Z,0 CVE-2009-1425,https://securityvulnerability.io/vulnerability/CVE-2009-1425,,"Unspecified vulnerability in HP ProCurve Threat Management Services zl Module (J9155A) ST.1.0.090213 and earlier allows remote attackers to cause a denial of service by triggering a stop or crash in httpd, aka PR_18770, a different vulnerability than CVE-2009-1423 and CVE-2009-1424.",HP,Procurve Threat Management Services Zl Module,,,0.03903999924659729,false,,false,false,false,,,false,false,,2009-07-14T20:16:00.000Z,0 CVE-2007-4514,https://securityvulnerability.io/vulnerability/CVE-2007-4514,,Unspecified vulnerability in HP ProCurve Manager and HP ProCurve Manager Plus 2.3 and earlier allows remote attackers to obtain sensitive information from the ProCurve Manager server via unknown attack vectors.,HP,Procurve Manager,,,0.008209999650716782,false,,false,false,false,,,false,false,,2009-04-15T10:00:00.000Z,0