CVE-2016-2007: Critical severity hp storage data protector vulnerability
Published Apr 21, 2016
·Updated
HPE Data Protector before 7.03108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3354.
Affected Software
3 affected components
HP Data Protector>=7.0<7.03_108
HP Data Protector>=8.0<8.15
HP Data Protector>=9.0<9.06
Event History
Apr 21, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-2007?
CVE-2016-2007 is classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2016-2007?
To remediate CVE-2016-2007, upgrade to HPE Data Protector version 7.03_108, 8.15, or 9.06 or later.
3
What software is affected by CVE-2016-2007?
CVE-2016-2007 affects HPE Data Protector versions prior to 7.03_108, 8.x versions prior to 8.15, and 9.x versions prior to 9.06.
4
Can CVE-2016-2007 be exploited remotely?
Yes, CVE-2016-2007 can be exploited remotely, allowing attackers to execute arbitrary code.
5
What type of vulnerability is CVE-2016-2007?
CVE-2016-2007 is a remote code execution vulnerability impacting certain versions of HP Data Protector.