Vulnerabilities > HP > Data Protector

DATE CVE VULNERABILITY TITLE RISK
2018-02-15 CVE-2017-5809 Permission Issues vulnerability in HP Data Protector
A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found.
local
low complexity
hp CWE-275
5.5
2018-02-15 CVE-2017-5808 Improper Input Validation vulnerability in HP Data Protector
A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found.
network
low complexity
hp CWE-20
7.5
2018-02-15 CVE-2017-5807 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HP Data Protector
A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found.
network
low complexity
hp CWE-119
critical
9.8
2016-04-21 CVE-2016-2008 Unspecified vulnerability in HP Data Protector
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors.
network
low complexity
hp
critical
9.8
2016-04-21 CVE-2016-2007 Unspecified vulnerability in HP Data Protector
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3354.
network
low complexity
hp
critical
9.8
2016-04-21 CVE-2016-2006 Unspecified vulnerability in HP Data Protector
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3353.
network
low complexity
hp
critical
9.8
2016-04-21 CVE-2016-2005 Unspecified vulnerability in HP Data Protector
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3352.
network
low complexity
hp
critical
9.8
2016-04-21 CVE-2016-2004 Missing Authentication for Critical Function vulnerability in HP Data Protector
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allow remote attackers to execute arbitrary code via unspecified vectors related to lack of authentication.
network
low complexity
hp CWE-306
critical
9.8