HPE LoadRunner 12.53补丁前4和HPE演艺中心在12.53补丁允许远程攻击者通过未指明的向量执行任意代码。至少在LoadRunner libxdrutil。dll mxdr_string基于堆的缓冲区溢出。
https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn03712en_us
//www.yyueer.com/security/research/tra - 2017 - 13所示
http://www.securitytracker.com/id/1038028