A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found.
Weaknesses in this category are related to improper assignment or handling of permissions.
Link | Tags |
---|---|
https://labs.mwrinfosecurity.com/assets/BlogFiles/mwri-setuid-bit-set-omniresolve-2017-08-02.pdf | third party advisory |
https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03732en_us | vendor advisory |
http://www.securityfocus.com/bid/100088 | vdb entry third party advisory |