HP Client Automation Remote Code Execution Vulnerability
BID:46862
Info
HP Client Automation Remote Code Execution Vulnerability
| Bugtraq ID: | 46862 |
| Class: | Design Error |
| CVE: |
CVE-2011-0889 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 14 2011 12:00AM |
| Updated: | Mar 18 2011 08:27PM |
| Credit: | Anonymous researcher working with TippingPoint Zero Day Initiative |
| Vulnerable: |
HP Client Automation 7.9 HP Client Automation 7.8 HP Client Automation 7.5 HP Client Automation 7.2 HP Client Automation 5.11 |
| Not Vulnerable: | |
Discussion
HP Client Automation Remote Code Execution Vulnerability
HP Client Automation is prone to a remote code-execution vulnerability in the 'radexecd.exe' component.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will result in the complete compromise of affected computers.
HP Client Automation is prone to a remote code-execution vulnerability in the 'radexecd.exe' component.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will result in the complete compromise of affected computers.
Exploit / POC
HP Client Automation Remote Code Execution Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
HP Client Automation Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
HP Client Automation Remote Code Execution Vulnerability
References:
References: