CVE-2011-4791
Published Feb 3, 2012
Last updated 5 years ago
Overview
- Description
- DBServer.exe in HP Data Protector Media Operations 6.11 and earlier allows remote attackers to execute arbitrary code via a crafted request containing a large value in a length field.
- Source
- hp-security-alert@hp.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-94
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:hp:data_protector_media_operations:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EBED0F4A-FDE2-4320-860F-2CD48BABFE6F", "versionEndIncluding": "6.11" }, { "criteria": "cpe:2.3:a:hp:data_protector_media_operations:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F7E5C1CF-56D7-460A-A14E-AC38D42AFD24" }, { "criteria": "cpe:2.3:a:hp:data_protector_media_operations:5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "34D2DC84-84CD-4197-A8F8-077612EC54E6" }, { "criteria": "cpe:2.3:a:hp:data_protector_media_operations:5.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A429D69F-7E45-4867-AF13-7A3810F3F574" }, { "criteria": "cpe:2.3:a:hp:data_protector_media_operations:6.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "695A5A15-9272-4CF4-AC8B-7F3BBD4F1566" } ], "operator": "OR" } ] } ]