PT-2010-4480 · Hewlett Packard · Hp Data Protector Express+1

Published

2010-09-09

·

Updated

2019-10-09

·

CVE-2010-3007

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HP Data Protector Express versions 3.x before build 56936 HP Data Protector Express versions 4.x before build 56906 HP Data Protector Express Single Server Edition (SSE) versions 3.x before build 56936 HP Data Protector Express Single Server Edition (SSE) versions 4.x before build 56906
Description The issue allows local users to gain privileges or cause a denial of service. The estimated number of potentially affected devices and details about real-world incidents are not specified. Technical details about exploitation, such as API endpoints, vulnerable parameters or variables, and function names, are not provided.
Recommendations For HP Data Protector Express versions 3.x, update to build 56936 or later. For HP Data Protector Express versions 4.x, update to build 56906 or later. For HP Data Protector Express Single Server Edition (SSE) versions 3.x, update to build 56936 or later. For HP Data Protector Express Single Server Edition (SSE) versions 4.x, update to build 56906 or later.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2010-3007
ZDI-10-174

Affected Products

Hp Data Protector Express
Hp Data Protector Express Single Server Edition