First published: Fri Jul 01 2011(Updated: )
Buffer overflow in omniinet.exe in the inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allows remote attackers to execute arbitrary code via a crafted request, related to the EXEC_CMD functionality.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP OpenView Storage Data Protector Cell Manager | =6.00 | |
HP OpenView Storage Data Protector Cell Manager | =6.10 | |
HP OpenView Storage Data Protector Cell Manager | =6.11 | |
HP OpenView Storage Data Protector Cell Manager | =6.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1866 is classified as critical due to its potential to allow remote code execution.
To mitigate CVE-2011-1866, upgrade HP OpenView Storage Data Protector to version 6.21 or later.
CVE-2011-1866 affects versions 6.00 through 6.20 of HP OpenView Storage Data Protector.
CVE-2011-1866 is a buffer overflow vulnerability found in the inet service of HP OpenView Storage Data Protector.
CVE-2011-1866 can be exploited by remote attackers who send crafted requests to the affected application.