← back
CVE-2011-4789

CVE-2011-4789

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 65%
from disclosure to weapon14 days
Published on NVDJan 13
1st PoC+14d
metasploitJan 12
exploitation probability
65%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Stack-based buffer overflow in magentservice.exe in the server in HP LoadRunner 11.00 before patch 4 allows remote attackers to execute arbitrary code via a crafted size value in a packet. NOTE: it was originally reported that the affected product is HP Diagnostics Server, but HP states that "the vulnerable product is actually HP LoadRunner."
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.