CVE-2013-6366

Vmware Hyperic HQ - Code Injection

Title source: rule

Description

The Groovy script console in VMware Hyperic HQ 4.6.6 allows remote authenticated administrators to execute arbitrary code via a Runtime.getRuntime().exec call.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotemultiple
https://www.exploit-db.com/exploits/28962

Scores

EPSS 0.0562
EPSS Percentile 90.4%

Details

CWE
CWE-94
Status published
Products (1)
vmware/hyperic_hq 4.6.6
Published Nov 04, 2013
Tracked Since Feb 18, 2026