CVE-2014-5362: Landesk Management Suite
High severity, CVSS 7.2. EPSS: 3.2% chance of exploitation in the next 30 days.
The admin interface in Landesk Management Suite 9.6 and earlier allows remote attackers to conduct remote file inclusion attacks involving ASPX pages from third-party sites via the d parameter to (1) ldms/sm_actionfrm.asp or (2) remote/frm_coremainfrm.aspx; or the (3) top parameter to remote/frm_splitfrm.aspx.
Affected products
- Landesk Landesk Management Suite: up to and including 9.6
Published 2017-09-19. Last modified 2026-06-17.