HP LoadRunner MMS Protocol Buffer Overflow RCE
Medium Nessus Plugin ID 96270
SynopsisAn application installed on the remote Windows host is affected by a remote code execution vulnerability.
DescriptionThe version of HP LoadRunner installed on the remote Windows host is affected by an unspecified buffer overflow condition in the MMS protocol due to improper validation of user-supplied input. An unauthenticated, remote attacker can exploit this to cause a denial of service condition or the execution of arbitrary code.
SolutionRemove the files MMSEngine.dll and MM1Client.dll as directed by HP.