NVD
- Id
- 8023
- Name
- CVE-2011-1036
- Description
- The XML Security Database Parser class in the XMLSecDB ActiveX control in the HIPSEngine component in the Management Server before 8.1.0.88, and the client before 1.6.450, in CA Host-Based Intrusion Prevention System (HIPS) 8.1, as used in CA Internet Security Suite (ISS) 2010, allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via vectors involving the SetXml and Save methods.
- Reject
- CVSS Version
- 2
- CVSS Score
- 8.8
- Severity
- High
- CVSS Base Score
- 8.8
- CVSS Impact Subscore
- 9.2
- CVSS Exploit Subscore
- 8.6
- CVSS Vector
- (AV:N/AC:M/Au:N/C:N/I:C/A:C)
- Pub Date
- 2017-01-07
- Published
- 2011-02-25
- Modified Date
- 2011-09-21
- Seq
- 2011-1036