CVE-2013-2347

HP Storage Data Protector - Denial of Service

Title source: rule

Description

The Backup Client Service (OmniInet.exe) in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary commands or cause a denial of service via a crafted EXEC_BAR packet to TCP port 5555, aka ZDI-CAN-1885.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/32164
exploitdb WORKING POC
by Chris Graham · pythonremotewindows
https://www.exploit-db.com/exploits/31689
metasploit WORKING POC EXCELLENT
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/misc/hp_dataprotector_exec_bar.rb

Scores

EPSS 0.7679
EPSS Percentile 99.0%

Details

Status published
Products (2)
hp/storage_data_protector 6.20 (2 CPE variants)
hp/storage_data_protector 6.21 (5 CPE variants)
Published Jan 04, 2014
Tracked Since Feb 18, 2026