Home/Product/hp data protector
Product

hp data protector

17 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2021-22517
all versions
A potential unauthorized privilege escalation vulnerability has been identified in Micro Focus Data Protector. The vulnerability a
8.8HIGH
CVE-2019-11660
>= 10.00 and <= 10.04
Privileges manipulation in Micro Focus Data Protector, versions 10.00, 10.01, 10.02, 10.03, 10.04, 10.10, 10.20, 10.30, 10.40. Thi
7.8HIGH
CVE-2019-3476
all versions
Remote arbitrary code execution in Micro Focus Data Protector, version 10.03 this vulnerability could allow remote arbitrary code
9.8CRITICAL
CVE-2017-5809
< 8.17
A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found.
5.5MEDIUM
CVE-2017-5808
< 8.17
A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found.
7.5HIGH
CVE-2017-5807
< 8.17
A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found.
9.8CRITICAL
CVE-2016-2008
>= 7.0 and < 7.03_108
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via uns
9.8CRITICAL
CVE-2016-2007
>= 7.0 and < 7.03_108
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via uns
9.8CRITICAL
CVE-2016-2006
>= 7.0 and < 7.03_108
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via uns
9.8CRITICAL
CVE-2016-2005
>= 7.0 and < 7.03_108
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via uns
9.8CRITICAL
CVE-2016-2004
>= 7.0 and < 7.03_108
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allow remote attackers to execute arbitrary code via unsp
9.8CRITICAL
CVE-2014-5160
all versions
Multiple directory traversal vulnerabilities in crs.exe in the Cell Request Service in HP Data Protector allow remote attackers to
CVE-2011-2399
<= 6.11
Unspecified vulnerability in the Media Management Daemon (mmd) in HP Data Protector 6.11 and earlier allows remote attackers to ca
CVE-2011-0924
all versions
The client in HP Data Protector does not verify the contents of files associated with the EXEC_CMD command, which allows remote at
CVE-2011-0923
all versions
The client in HP Data Protector does not properly validate EXEC_CMD arguments, which allows remote attackers to execute arbitrary
CVE-2011-0922
all versions
The client in HP Data Protector allows remote attackers to execute arbitrary programs via an EXEC_SETUP command that references a
CVE-2011-0921
all versions
crs.exe in the Cell Manager Service in the client in HP Data Protector does not properly validate credentials associated with the
threatengine.sh