CVE-2013-6366: VMware Hyperic Hq

Medium severity, CVSS 6.5. EPSS: 7% chance of exploitation in the next 30 days.

The Groovy script console in VMware Hyperic HQ 4.6.6 allows remote authenticated administrators to execute arbitrary code via a Runtime.getRuntime().exec call.

Affected products

  • VMware Hyperic Hq: version 4.6.6 only

Published 2013-11-04. Last modified 2026-06-17.