CVE-2013-3574

HP Insight Diagnostics 9.4.0.4710 - Path Traversal and Arbitrary File Write via devicePath Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2013-3574. PoCs published by Markus Wulftange.

AI-analyzed exploit summary This exploit demonstrates a remote code injection vulnerability in HP Insight Diagnostics. The attacker can inject arbitrary PHP code via the 'leftFileName' parameter, leading to remote code execution (RCE) when the application processes the malicious input.

Description

Absolute path traversal vulnerability in hpdiags/frontend2/commands/saveCompareConfig.php in HP Insight Diagnostics 9.4.0.4710 allows remote attackers to write data to arbitrary files via a full pathname in the argument to the devicePath (aka mount) parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Markus Wulftange · textwebappsphp
https://www.exploit-db.com/exploits/38562

This exploit demonstrates a remote code injection vulnerability in HP Insight Diagnostics. The attacker can inject arbitrary PHP code via the 'leftFileName' parameter, leading to remote code execution (RCE) when the application processes the malicious input.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: HP Insight Diagnostics 9.4.0.4710
No auth needed
Prerequisites: Network access to the vulnerable application · The target application must be running a vulnerable version of HP Insight Diagnostics
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/324668

Scores

EPSS 0.0491
EPSS Percentile 91.0%

Details

CWE
CWE-20
Status published
Products (1)
hp/insight_diagnostics 9.4.0.4710
Published Jun 14, 2013
Tracked Since Feb 18, 2026