Vulnerabilities > CVE-2010-3008 - Unspecified vulnerability in HP Data Protector Express 3.1/3.5/4.0

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
hp
nessus

Summary

Unspecified vulnerability in HP Data Protector Express, and Data Protector Express Single Server Edition (SSE), 3.x before build 56936 and 4.x before build 56906 on Windows allows local users to gain privileges or cause a denial of service via unknown vectors, a different vulnerability than CVE-2010-3007.

Vulnerable Configurations

Part Description Count
Application
Hp
10

Nessus

NASL familyWindows
NASL idHP_DATA_PROTECTOR_EXP_MULTIPLE.NASL
descriptionHP Data Protector Express is installed on the remote host. The installed version of the software is affected by multiple remote vulnerabilities including a buffer overflow and a NULL pointer deference. An attacker could leverage these vulnerabilities to execute remote code or cause a denial of service attack on the affected host.
last seen2020-06-01
modified2020-06-02
plugin id49645
published2010-09-22
reporterThis script is Copyright (C) 2010-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/49645
titleHP Data Protector Express < 4.x build 56906 / 3.x build 56936 Multiple Vulnerabilities