vendor:
Data Protector
by:
Aniway.Anyway, juan vazquez
N/A
CVSS
N/A
Remote Code Execution
78
CWE
Product Name: Data Protector
Affected Version From: HP Data Protector 6.20 build 370
Affected Version To: HP Data Protector 6.20 build 370
Patch Exists: YES
Related CWE: CVE-2013-2347
CPE: a:hewlett_packard:data_protector
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 2003 SP2, Windows 2008 R2
2014
HP Data Protector Backup Client Service Remote Code Execution
This module abuses the Backup Client Service (OmniInet.exe) to achieve remote code execution. The vulnerability exists in the EXEC_BAR operation, which allows to execute arbitrary processes. This module has been tested successfully on HP Data Protector 6.20 on Windows 2003 SP2 and Windows 2008 R2.
Mitigation:
https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay/?docId=emr_na-c03822422