vendor:
HP Data Protector
by:
Alessandro Di Pinto, Claudio Moletta
5.5
CVSS
MEDIUM
Arbitrary Remote Command Execution
78
CWE
Product Name: HP Data Protector
Affected Version From: A.06.20
Affected Version To:
Patch Exists: YES
Related CWE: CVE-2011-0923
CPE: a:hp:data_protector:a.06.20
Platforms Tested: Microsoft Windows
2011
HP Data Protector Arbitrary Remote Command Execution
This script allows to execute a command with an arbitrary number of arguments. The trick calls 'perl.exe' interpreter installed with HP Data Protector inside the directory {install_path}/bin/. The main goal of the script is to bypass the limitation of executing only a single command without any parameter, as provided by already existing exploits. As shown below, it's possible to exploit the security issue in order to run any command inside the target system.
Mitigation:
Apply the patch provided by HP.