CVE-2013-2328: Critical severity hp storage data protector vulnerability
Published Jun 6, 2013
·Updated
Unspecified vulnerability in HP Storage Data Protector 6.20, 6.21, 7.00, and 7.01 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1636.
Affected Software
22 affected components
HP Storage Data Protector Hp-ux=6.20
HP Storage Data Protector Redhat Enterprise Linux=6.20
HP Storage Data Protector Sunos=6.20
HP Storage Data Protector Suse Linux=6.20
HP Storage Data Protector Windows Server 2003=6.20
HP Storage Data Protector Windows Server 2008=6.20
HP Storage Data Protector Hp-ux=6.21
HP Storage Data Protector Redhat Enterprise Linux=6.21
HP Storage Data Protector Sunos=6.21
HP Storage Data Protector Suse Linux=6.21
HP Storage Data Protector Windows Server 2003=6.21
HP Storage Data Protector Windows Server 2008=6.21
HP Storage Data Protector Hp-ux=7.00
HP Storage Data Protector Redhat Enterprise Linux=7.00
HP Storage Data Protector Suse Linux=7.00
HP Storage Data Protector Windows Server 2003=7.00
HP Storage Data Protector Windows Server 2008=7.00
HP Storage Data Protector Hp-ux=7.01
HP Storage Data Protector Redhat Enterprise Linux=7.01
HP Storage Data Protector Suse Linux=7.01
HP Storage Data Protector Windows Server 2003=7.01
HP Storage Data Protector Windows Server 2008=7.01
Event History
Jun 6, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-2328?
The severity of CVE-2013-2328 has been classified as critical due to the potential for remote code execution by attackers.
2
How do I fix CVE-2013-2328?
To fix CVE-2013-2328, update to the latest version of HP Storage Data Protector that contains the security patches addressing this vulnerability.
3
What software versions are affected by CVE-2013-2328?
CVE-2013-2328 affects HP Storage Data Protector versions 6.20, 6.21, 7.00, and 7.01.
4
Can CVE-2013-2328 be exploited over the network?
Yes, CVE-2013-2328 can be exploited by remote attackers over the network.
5
What types of attacks are possible with CVE-2013-2328?
CVE-2013-2328 allows remote attackers to execute arbitrary code, potentially leading to unauthorized access or data compromise.