May 22, 2012, 09:50:48 PM *
Welcome, Guest. Please login or register.

Login with username, password and session length
News: THC is up and running !
 

 
advertisement:

Pages: [1]
  Print  
Author Topic: RSS: HP Data Protector Media Operations Server 'DBServer.exe' Remote Code Execution  (Read 19 times)
zomgwtfbbq
Challenge Coder
Administrator
Hero Member
*****

Karma: +31340/-1
Posts: I am a geek!!


thc title: thc elite
thc points: 3315
challenges: (69/83)

View Profile
« on: February 09, 2012, 01:29:38 AM »
Share on FacebookFacebook Share

HP Data Protector Media Operations Server 'DBServer.exe' Remote Code Execution


Synopsis :

The remote service is affected by a remote code execution
vulnerability.

Description :

According to its version, the installation of HP Data Protector Media
Operations Server on the remote host allows an attacker to execute
arbitrary code on the affected host with SYSTEM privileges due to a
buffer overflow.

Note that the vendor reports only Windows installs are affected.

See also :


only registered users with at least 25 hack challenge points can see links:
click here in order to visit the hack challenges
http://www.zerodayinitiative.com/advisories/ZDI-11-112/


only registered users with at least 25 hack challenge points can see links:
click here in order to visit the hack challenges
http://archives.neohapsis.com/archives/bugtraq/2011-03/0226.html


only registered users with at least 25 hack challenge points can see links:
click here in order to visit the hack challenges
http://www.nessus.org/u?5b3eef63


Solution :

Apply the SMO A.06.20.01 patch as described in the vendor
advisory.

Risk factor :

Critical / CVSS Base Score : 10.0
(CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C)



original thread:
only registered users with at least 25 hack challenge points can see links:
click here in order to visit the hack challenges
http://www.nessus.org/plugins/index.php?view=single&id=57862
Logged


only registered users with at least 25 hack challenge points can see links:
  click here in order to visit the hack challenges


Ook al ben ik een slet toch houdt ik van je..
Pages: [1]
  Print  
 
Jump to:  


Related Topics
Subject Started by Replies Views Last post
RSS: HP Data Protector Media Operations DBServer opcode 0x10 Traversal Arbitrary File Access
Latest Tools and Files
zomgwtfbbq 0 8 Last post March 19, 2012, 09:31:11 PM
by zomgwtfbbq
RSS: Dropbear SSH Server Channel Concurrency Use-after-free Remote Code Execution
Latest Tools and Files
zomgwtfbbq 0 33 Last post March 02, 2012, 03:33:21 AM
by zomgwtfbbq
RSS: MS11-058: Vulnerabilities in DNS Server Could Allow Remote Code Execution (2562485) (remote check)
Latest Tools and Files
zomgwtfbbq 0 55 Last post August 18, 2011, 12:31:51 AM
by zomgwtfbbq
RSS: Vulnerabilities in DNS Server Could Allow Remote Code Execution
Security News
zomgwtfbbq 0 125 Last post August 10, 2011, 01:45:20 PM
by zomgwtfbbq
RSS: HP Data Protector Remote Command Execution
Latest Tools and Files
zomgwtfbbq 0 435 Last post May 05, 2011, 08:43:26 AM
by zomgwtfbbq
RSS: MS11-020: Vulnerability in SMB Server Could Allow Remote Code Execution (2508429) (remote check)
Latest Tools and Files
zomgwtfbbq 0 158 Last post April 20, 2011, 09:32:10 PM
by zomgwtfbbq
RSS: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution (2451910)
Latest Tools and Files
zomgwtfbbq 0 133 Last post January 12, 2011, 01:32:07 AM
by zomgwtfbbq
RSS: Remote Code Execution in DiskPulse Server
Latest Tools and Files
zomgwtfbbq 0 46 Last post December 10, 2010, 02:21:36 AM
by zomgwtfbbq
RSS: MS10-054: Vulnerabilities in SMB Server Could Allow Remote Code Execution (982214) (remote credentialed check)
Latest Tools and Files
zomgwtfbbq 0 82 Last post August 23, 2010, 09:09:35 PM
by zomgwtfbbq
MS09-052: Vulnerability in Windows Media Player Could Allow Remote Code Execution (97
Latest Tools and Files
zomgwtfbbq 0 65 Last post October 14, 2009, 09:49:22 PM
by zomgwtfbbq
MS09-047: Vulnerabilities in Windows Media Format Could Allow Remote Code Execution (
Latest Tools and Files
zomgwtfbbq 0 44 Last post September 09, 2009, 10:04:51 AM
by zomgwtfbbq
SMF Board hacked and modded by zomgwtfbekjam aka Rembo from Tools & Design