CVE-2011-1036
Estado: ModificadaAlta (8.8)—
The XML Security Database Parser class in the XMLSecDB ActiveX control in the HIPSEngine component in the Management Server before 8.1.0.88, and the client before 1.6.450, in CA Host-Based Intrusion Prevention System (HIPS) 8.1, as used in CA Internet Security Suite (ISS) 2010, allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via vectors involving the SetXml and Save methods.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:M/Au:N/C:N/I:C/A:C
- Puntuación base: 8.8
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 2.55%
- Percentil entre todas las CVEs puntuadas: 84
- Fecha de la puntuación: 2/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (3)
CWE
- NVD-CWE-Other
Referencias
- http://secunia.com/advisories/43377
- http://secunia.com/advisories/43490
- http://securityreason.com/securityalert/8106
- http://www.securityfocus.com/archive/1/516649/100/0/threaded
- http://www.securityfocus.com/archive/1/516687/100/0/threaded
- http://www.securityfocus.com/bid/46539
- http://www.securitytracker.com/id?1025120
- http://www.vupen.com/english/advisories/2011/0496
- http://www.zerodayinitiative.com/advisories/ZDI-11-093
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65632
- https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7B53A608DF-BFDB-4AB3-A98F-E4BB6BC7A2F4%7D
- http://secunia.com/advisories/43377
- http://secunia.com/advisories/43490
- http://securityreason.com/securityalert/8106
- http://www.securityfocus.com/archive/1/516649/100/0/threaded
- http://www.securityfocus.com/archive/1/516687/100/0/threaded
- http://www.securityfocus.com/bid/46539
- http://www.securitytracker.com/id?1025120
- http://www.vupen.com/english/advisories/2011/0496
- http://www.zerodayinitiative.com/advisories/ZDI-11-093
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65632
- https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7B53A608DF-BFDB-4AB3-A98F-E4BB6BC7A2F4%7D
JSON original (NVD)
Mostrar
{
"id": "CVE-2011-1036",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 8.8,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 9.2,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2011-02-25T18:00:02.167",
"references": [
{
"url": "http://secunia.com/advisories/43377",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/43490",
"source": "cve@mitre.org"
},
{
"url": "http://securityreason.com/securityalert/8106",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/516649/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/516687/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/46539",
"source": "cve@mitre.org"
},
{
"url": "http://www.securitytracker.com/id?1025120",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2011/0496",
"source": "cve@mitre.org"
},
{
"url": "http://www.zerodayinitiative.com/advisories/ZDI-11-093",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/65632",
"source": "cve@mitre.org"
},
{
"url": "https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7B53A608DF-BFDB-4AB3-A98F-E4BB6BC7A2F4%7D",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/43377",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/43490",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://securityreason.com/securityalert/8106",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/516649/100/0/threaded",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/516687/100/0/threaded",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/46539",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id?1025120",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2011/0496",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.zerodayinitiative.com/advisories/ZDI-11-093",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/65632",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7B53A608DF-BFDB-4AB3-A98F-E4BB6BC7A2F4%7D",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The XML Security Database Parser class in the XMLSecDB ActiveX control in the HIPSEngine component in the Management Server before 8.1.0.88, and the client before 1.6.450, in CA Host-Based Intrusion Prevention System (HIPS) 8.1, as used in CA Internet Security Suite (ISS) 2010, allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via vectors involving the SetXml and Save methods."
},
{
"lang": "es",
"value": "La clase XML Security Database Parser en el control XMLSecDB ActiveX en el componente HIPSEngine en el Management Server anterior a v8.1.0.88, y el cliente anterior a v1.6.450, en CA Host-Based Intrusion Prevention System (HIPS) v8.1, que se utiliza en CA Internet Security Suite (ISS) de 2010, permite a atacantes remotos descargar un programa arbitrario en un equipo cliente, y ejecutar el mismo a través de vectores que comprenden los métodos SetXml y Save."
}
],
"lastModified": "2026-06-16T23:28:35.963",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:ca:host-based_intrusion_prevention_system:8.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4924C835-EBFB-4B03-95A0-5FF7242D9A41"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:ca:internet_security_suite_2010:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "62567F6E-86F1-4A74-903F-8DADEDD61F23"
},
{
"criteria": "cpe:2.3:a:ca:internet_security_suite_2011:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "70377A35-C09D-450C-9AEC-68421FEE1927"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "cve@mitre.org"
}