HP Data Protector Express and Data Protector Express Single Server Edition DoS, Execution of Arbitrary Code
15 May 2009
Summary
A security vulnerability has been identified with HP Data Protector Express 3.x and 4.x and HP Data Protector Express Single Server Edition (SSE) 3.x and 4.x running on supported Microsoft Windows, Linux, and NetWare versions. The vulnerability could be exploited locally to create a Denial of Service (DoS) or to execute arbitrary code.
Vulnerable Systems:
* HP Data Protector Express 3.x and HP Data Protector Express SSE 3.x prior to build 47065
* HP Data Protector Express 4.x and HP Data Protector Express SSE 4.x prior to build 46537