« Volver al listado

CVE-2014-2623

Estado: ModificadaAlta (10)—

Unspecified vulnerability in HP Storage Data Protector 8.x allows remote attackers to execute arbitrary code via unknown vectors.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2014-2623",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 10,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": false,
        "impactScore": 10,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "hp-security-alert@hp.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2014-07-18T00:55:04.737",
  "references": [
    {
      "url": "http://packetstormsecurity.com/files/130658/HP-Data-Protector-8.10-Remote-Command-Execution.html",
      "tags": [
        "Exploit",
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "hp-security-alert@hp.com"
    },
    {
      "url": "http://www.exploit-db.com/exploits/34066/",
      "tags": [
        "Exploit",
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "hp-security-alert@hp.com"
    },
    {
      "url": "http://www.exploit-db.com/exploits/35961",
      "tags": [
        "Exploit",
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "hp-security-alert@hp.com"
    },
    {
      "url": "http://www.exploit-db.com/exploits/36304",
      "tags": [
        "Exploit",
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "hp-security-alert@hp.com"
    },
    {
      "url": "http://www.osvdb.org/109069",
      "tags": [
        "Broken Link"
      ],
      "source": "hp-security-alert@hp.com"
    },
    {
      "url": "http://www.securitytracker.com/id/1030583",
      "source": "hp-security-alert@hp.com"
    },
    {
      "url": "https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04373818",
      "tags": [
        "Not Applicable"
      ],
      "source": "hp-security-alert@hp.com"
    },
    {
      "url": "http://packetstormsecurity.com/files/130658/HP-Data-Protector-8.10-Remote-Command-Execution.html",
      "tags": [
        "Exploit",
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.exploit-db.com/exploits/34066/",
      "tags": [
        "Exploit",
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.exploit-db.com/exploits/35961",
      "tags": [
        "Exploit",
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.exploit-db.com/exploits/36304",
      "tags": [
        "Exploit",
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.osvdb.org/109069",
      "tags": [
        "Broken Link"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securitytracker.com/id/1030583",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04373818",
      "tags": [
        "Not Applicable"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Unspecified vulnerability in HP Storage Data Protector 8.x allows remote attackers to execute arbitrary code via unknown vectors."
    },
    {
      "lang": "es",
      "value": "Vulnerabilidad no especificada en HP Storage Data Protector 8.x permite a atacantes remotos ejecutar código arbitrario a través de vectores desconocidos."
    }
  ],
  "lastModified": "2026-06-17T00:06:55.847",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:hp:storage_data_protector:8.0:-:*:*:*:windows_7:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7EB694AD-40E2-4FC9-B077-B85D0772DB13"
            },
            {
              "criteria": "cpe:2.3:a:hp:storage_data_protector:8.0:-:*:*:*:windows_8:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CE6E704B-05D3-4250-AAF7-BF993ABDF070"
            },
            {
              "criteria": "cpe:2.3:a:hp:storage_data_protector:8.0:-:*:*:*:windows_server_2003:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6C3AF84A-E325-4538-A45B-AF99DE97A291"
            },
            {
              "criteria": "cpe:2.3:a:hp:storage_data_protector:8.0:-:*:*:*:windows_server_2008:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A27FB93C-1DB0-4916-9CE1-333C32D55385"
            },
            {
              "criteria": "cpe:2.3:a:hp:storage_data_protector:8.10:-:*:*:*:windows_7:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A52B58A6-65EF-4117-B811-65D9E368EFFF"
            },
            {
              "criteria": "cpe:2.3:a:hp:storage_data_protector:8.10:-:*:*:*:windows_8:*:*",
              "vulnerable": true,
              "matchCriteriaId": "51D22498-BB0B-4907-A028-575F34547DC7"
            },
            {
              "criteria": "cpe:2.3:a:hp:storage_data_protector:8.10:-:*:*:*:windows_server_2003:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C9B5E718-EB24-4C7D-AD14-FE4310784266"
            },
            {
              "criteria": "cpe:2.3:a:hp:storage_data_protector:8.10:-:*:*:*:windows_server_2008:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C1D3C833-D929-4097-B143-0D7E60DB4985"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "evaluatorComment": "Per: https://h20565.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?spf_p.tpst=kbDocDisplay&spf_p.prp_kbDocDisplay=wsrp-navigationalState%3DdocId%253Demr_na-c04373818-2%257CdocLocale%253D%257CcalledBy%253D&javax.portlet.begCacheTok=com.vignette.cachetoken&javax.portlet.endCacheTok=com.vignette.cachetoken\n\n\"HP Storage Data Protector v8.X running on Windows 2003/2008/7/8\"",
  "sourceIdentifier": "hp-security-alert@hp.com"
}