HP Data Protector Multiple Vulnerabilities (HPSBMU02895 SSRT101253)

This script is Copyright (C) 2014 Tenable Network Security, Inc.


Synopsis :

The remote host is affected by multiple vulnerabilities.

Description :

The remote HP Data Protector install is affected by multiple
vulnerabilities that could allow a remote attacker to gain elevated
privileges, trigger a denial of service vulnerability, or in the worst
case, execute arbitrary code.

See also :

http://www.zerodayinitiative.com/advisories/ZDI-14-001
http://www.zerodayinitiative.com/advisories/ZDI-14-002
http://www.zerodayinitiative.com/advisories/ZDI-14-003
http://www.zerodayinitiative.com/advisories/ZDI-14-004
http://www.zerodayinitiative.com/advisories/ZDI-14-005
http://www.zerodayinitiative.com/advisories/ZDI-14-006
http://www.zerodayinitiative.com/advisories/ZDI-14-007
http://www.zerodayinitiative.com/advisories/ZDI-14-008
http://www.zerodayinitiative.com/advisories/ZDI-14-009
http://www.nessus.org/u?fe03aaf8

Solution :

Patch the installation according to the vendor's advisory.

Risk factor :

Critical / CVSS Base Score : 10.0
(CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 8.7
(CVSS2#E:ND/RL:OF/RC:C)
Public Exploit Available : true