HPSBMA02417Vendor advisory
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01697543 CVE-2009-0714
HP Data Protector 4.00-SP1b43064 - Remote Memory Leak/Denial of Service
Record summary
CVE-2009-0714 has a selected CVSS score of 7.2; EIP currently links 2 catalogued exploits.
Description
Unspecified vulnerability in the dpwinsup module (dpwinsup.dll) for dpwingad (dpwingad.exe) in HP Data Protector Express and Express SSE 3.x before build 47065, and Express and Express SSE 4.x before build 46537, allows remote attackers to cause a denial of service (application crash) or read portions of memory via one or more crafted packets.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBHP Data Protector 4.00-SP1b43064 - Remote Memory Leak/Denial of ServiceExploitDB exploitby NibinNot analyzed1 file
ExploitDBHP Data Protector 4.00-SP1b43064 - Remote Memory Leak/Denial of Service (Metasploit)ExploitDB exploitby NibinNot analyzed1 file
References
9ivizsecurity.com
http://ivizsecurity.com/security-advisory-iviz-sr-09002.html 35084Third-party advisory
http://secunia.com/advisories/35084 34955vdb entry
http://www.securityfocus.com/bid/34955 1022220vdb entry
http://www.securitytracker.com/id?1022220 ADV-2009-1309vdb entry
http://www.vupen.com/english/advisories/2009/1309 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2009-0714 9006exploit
https://www.exploit-db.com/exploits/9006 9007exploit
https://www.exploit-db.com/exploits/9007