{"api_version":"1","generated_at":"2026-07-23T07:40:53+00:00","cve":"CVE-2006-4201","urls":{"html":"https://cve.report/CVE-2006-4201","api":"https://cve.report/api/cve/CVE-2006-4201.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-4201","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-4201"},"summary":{"title":"CVE-2006-4201","description":"Unspecified vulnerability in the backup agent and Cell Manager in HP OpenView Storage Data Protector 5.1 and 5.5 before 20060810 allows remote attackers to execute arbitrary code on an agent via unspecified vectors related to authentication and input validation.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2006-08-17 21:04:00","updated_at":"2017-07-20 01:32:00"},"problem_types":["NVD-CWE-Other"],"metrics":[],"references":[{"url":"http://secunia.com/advisories/21485","name":"21485","refsource":"SECUNIA","tags":["Patch","Vendor Advisory"],"title":"Secunia - Advisories - HP OpenView Storage Data Protector Backup Agents Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2006/3273","name":"ADV-2006-3273","refsource":"VUPEN","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/28348","name":"hp-openview-backup-agent-command-execution(28348)","refsource":"XF","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/673228","name":"VU#673228","refsource":"CERT-VN","tags":["US Government Resource"],"title":"US-CERT Vulnerability Note VU#673228","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.uniras.gov.uk/niscc/docs/re-20060811-00547.pdf?lang=en","name":"http://www.uniras.gov.uk/niscc/docs/re-20060811-00547.pdf?lang=en","refsource":"MISC","tags":[],"title":"","mime":"application/pdf","httpstatus":"-1","archivestatus":"200"},{"url":"http://securitytracker.com/id?1016688","name":"1016688","refsource":"SECTRACK","tags":["Patch"],"title":"SecurityTracker.com Archives - HP OpenView Storage Data Protector Input Validation Flaw in Backup Agents Lets Remote Users Execute Arbitrary Commands","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c00742778","name":"HPSBMA02138","refsource":"HP","tags":[],"title":"HPSBMA02138 SSRT061184 rev.3 - HP OpenView Storage Data Protector, Remote Unauthorized Arbitrary Command Execution - c00742778 - \r\n\t\tHP Business Support Center","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/19495","name":"19495","refsource":"BID","tags":["Patch"],"title":"HP OpenView Storage Data Protector Backup Agent Remote Arbitrary Command Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://jvn.jp/niscc/NISCC-412866/","name":"http://jvn.jp/niscc/NISCC-412866/","refsource":"MISC","tags":[],"title":"NISCC-412866: HP OpenView Storage Data Protector の脆弱性","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-4201","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-4201","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"4201","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_storage_data_protector","cpe6":"5.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"4201","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_storage_data_protector","cpe6":"5.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"4201","vulnerable":"1","versionEndIncluding":"5.5","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_storage_data_protector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-4201","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in the backup agent and Cell Manager in HP OpenView Storage Data Protector 5.1 and 5.5 before 20060810 allows remote attackers to execute arbitrary code on an agent via unspecified vectors related to authentication and input validation."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1016688","refsource":"SECTRACK","url":"http://securitytracker.com/id?1016688"},{"name":"http://jvn.jp/niscc/NISCC-412866/","refsource":"MISC","url":"http://jvn.jp/niscc/NISCC-412866/"},{"name":"http://www.uniras.gov.uk/niscc/docs/re-20060811-00547.pdf?lang=en","refsource":"MISC","url":"http://www.uniras.gov.uk/niscc/docs/re-20060811-00547.pdf?lang=en"},{"name":"21485","refsource":"SECUNIA","url":"http://secunia.com/advisories/21485"},{"name":"HPSBMA02138","refsource":"HP","url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c00742778"},{"name":"19495","refsource":"BID","url":"http://www.securityfocus.com/bid/19495"},{"name":"SSRT061184","refsource":"HP","url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c00742778"},{"name":"VU#673228","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/673228"},{"name":"ADV-2006-3273","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2006/3273"},{"name":"hp-openview-backup-agent-command-execution(28348)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/28348"}]}},"nvd":{"publishedDate":"2006-08-17 21:04:00","lastModifiedDate":"2017-07-20 01:32:00","problem_types":["NVD-CWE-Other"],"metrics":{"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL","baseScore":7.5},"severity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:hp:openview_storage_data_protector:*:*:*:*:*:*:*:*","versionEndIncluding":"5.5","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:hp:openview_storage_data_protector:5.1:*:*:*:*:*:*:*","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"4201","Ordinal":"19527","Title":"CVE-2006-4201","CVE":"CVE-2006-4201","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"4201","Ordinal":"1","NoteData":"Unspecified vulnerability in the backup agent and Cell Manager in HP OpenView Storage Data Protector 5.1 and 5.5 before 20060810 allows remote attackers to execute arbitrary code on an agent via unspecified vectors related to authentication and input validation.","Type":"Description","Title":null},{"CveYear":"2006","CveId":"4201","Ordinal":"2","NoteData":"2006-08-17","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"4201","Ordinal":"3","NoteData":"2017-07-19","Type":"Other","Title":"Modified"}]}}}