Vulnerabilities > CVE-2001-0311 - Local Security vulnerability in HP Hp-Ux and Omniback II
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 | |
OS | Hp
| 42 |
Exploit-Db
description HP OpenView OmniBack II Generic Remote Exploit. CVE-2001-0311. Remote exploits for multiple platform id EDB-ID:1114 last seen 2016-01-31 modified 2000-12-21 published 2000-12-21 reporter DiGiT source https://www.exploit-db.com/download/1114/ title HP OpenView OmniBack II Generic Remote Exploit description HP OpenView OmniBack II Command Execution. CVE-2001-0311. Remote exploits for multiple platform id EDB-ID:16291 last seen 2016-02-01 modified 2010-09-20 published 2010-09-20 reporter metasploit source https://www.exploit-db.com/download/16291/ title HP OpenView OmniBack II Command Execution description HP OpenView OmniBack II A.03.50 Command Executino. CVE-2001-0311. Remote exploits for multiple platform id EDB-ID:9942 last seen 2016-02-01 modified 2001-02-28 published 2001-02-28 reporter H D Moore source https://www.exploit-db.com/download/9942/ title HP OpenView OmniBack II A.03.50 - Command Executino
Metasploit
description | This module uses a vulnerability in the OpenView Omniback II service to execute arbitrary commands. This vulnerability was discovered by DiGiT and his code was used as the basis for this module. For Microsoft Windows targets, due to module limitations, use the "unix/cmd/generic" payload and set CMD to your command. You can only pass a small amount of characters (4) to the command line on Windows. |
id | MSF:EXPLOIT/MULTI/MISC/OPENVIEW_OMNIBACK_EXEC |
last seen | 2020-05-22 |
modified | 2017-11-08 |
published | 2008-11-13 |
references | |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/multi/misc/openview_omniback_exec.rb |
title | HP OpenView OmniBack II Command Execution |
Packetstorm
data source | https://packetstormsecurity.com/files/download/82266/openview_omniback_exec.rb.txt |
id | PACKETSTORM:82266 |
last seen | 2016-12-05 |
published | 2009-10-27 |
reporter | H D Moore |
source | https://packetstormsecurity.com/files/82266/HP-OpenView-OmniBack-II-Command-Execution.html |
title | HP OpenView OmniBack II Command Execution |
Saint
bid | 11032 |
description | HP OpenView OmniBack directory traversal |
id | net_omnibackshell |
osvdb | 6018 |
title | omniback_dir_traversal |
type | remote |