CVE-2013-4836: HP Alm Synchronizer
High severity, CVSS 7.5. EPSS: 5.5% chance of exploitation in the next 30 days.
Unspecified vulnerability in the GossipService SOAP Request implementation in the Synchronizer component before 1.4.2 in HP Application LifeCycle Management (ALM) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1759.
Affected products
- HP Alm Synchronizer: up to and including 1.41; version 1.10 only; version 1.20 only; version 1.30 only; version 1.40 only
Published 2013-11-04. Last modified 2026-06-16.