CVE-2014-2611: HP Executive Scorecard
High severity, CVSS 9.0. EPSS: 11.9% chance of exploitation in the next 30 days.
Directory traversal vulnerability in the fndwar web application in HP Executive Scorecard 9.40 and 9.41 allows remote authenticated users to execute arbitrary code, or obtain sensitive information or delete data, via unspecified vectors, aka ZDI-CAN-2120.
Affected products
- HP Executive Scorecard: version 9.40 only; version 9.41 only
Published 2014-06-19. Last modified 2026-06-17.