HP Data Protector Multiple vulnerabilities
Publish Date: 31 mai 2016
Gravité: : Critique
Identifiant(s) CVE: : CVE-2010-1515,CVE-2011-1514,CVE-2011-1865
Date du conseil: 31 mai 2016
Description
Multiple vulnerabilities have been found in HP Data Protector that could allow a remote attacker to execute arbitrary code and lead to denial of service conditions. The vulnerabilities are triggered by sending a request to port 5555 of a host running the "data protector inet" service, part of HP Data Protector. The request has several parameters, including an opcode. By sending requests with specially crafted parameters, the different bugs can be triggered.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1004721
Trend Micro Deep Security DPI Rule Name: 1004721 - HP Data Protector Multiple Vulnerabilities
Affected software and version:
- HP Data Protector