Unspecified vulnerability in the GossipService SOAP Request implementation in the Synchronizer component before 1.4.2 in HP Application LifeCycle Management (ALM) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1759.
2013-11-04T16:55:04.890
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | hp | alm_synchronizer | ≤ 1.41 | Yes |
Application | hp | alm_synchronizer | 1.10 | Yes |
Application | hp | alm_synchronizer | 1.20 | Yes |
Application | hp | alm_synchronizer | 1.30 | Yes |
Application | hp | alm_synchronizer | 1.40 | Yes |
Application | hp | application_lifecycle_management | - | No |