VendorsHPopenview_storage_data_protector6.11
Vulnerabilities

HP OpenView Storage Data Protector 6.11

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

15CVEs
CVE-2011-1865
Multiple stack-based buffer overflows in the inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allow remote attackers to execute arbitrary code via a request containing crafted parameters.
Published 2011-07-01 · Modified
10.04 PoCEPSS 0.889
CVE-2011-1732
Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed stutil message.
Published 2011-05-07 · Modified
10.0EPSS 0.247
CVE-2011-1866
Buffer overflow in omniinet.exe in the inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allows remote attackers to execute arbitrary code via a crafted request, related to the EXEC_CMD functionality.
Published 2011-07-01 · Modified
10.01 PoCEPSS 0.209
CVE-2011-1731
Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed EXEC_INTEGUTIL message.
Published 2011-05-07 · Modified
10.0EPSS 0.149
CVE-2011-1734
Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed omniiaputil message.
Published 2011-05-07 · Modified
10.0EPSS 0.149
CVE-2011-1728
Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed EXEC_BAR message.
Published 2011-05-07 · Modified
10.0EPSS 0.136
CVE-2011-1729
Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed GET_FILE message.
Published 2011-05-07 · Modified
10.0EPSS 0.136
CVE-2011-1730
Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed EXEC_SCRIPT message.
Published 2011-05-07 · Modified
10.0EPSS 0.136
CVE-2011-1733
Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed HPFGConfig message.
Published 2011-05-07 · Modified
10.0EPSS 0.136
CVE-2011-1735
Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed bm message.
Published 2011-05-07 · Modified
10.0EPSS 0.136
CVE-2011-1864
Unspecified vulnerability in HP OpenView Storage Data Protector 6.0, 6.10, and 6.11 allows remote attackers to execute arbitrary code via unknown vectors.
Published 2011-06-14 · Modified
9.3EPSS 0.092
CVE-2011-1736
Directory traversal vulnerability in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to read arbitrary files via directory traversal sequences in a filename in a GET_FILE message.
Published 2011-05-07 · Modified
8.5EPSS 0.098
CVE-2011-0275
Unspecified vulnerability in HP OpenView Storage Data Protector 6.0, 6.10, and 6.11 allows remote attackers to cause a denial of service via unknown vectors.
Published 2011-01-28 · Modified
7.1EPSS 0.042
CVE-2011-1514
The inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request containing crafted parameters.
Published 2011-07-01 · Modified
5.0EPSS 0.045
CVE-2011-1515
The inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allows remote attackers to cause a denial of service (daemon exit) via a request containing crafted parameters.
Published 2011-07-01 · Modified
5.0EPSS 0.045