HP LeftHand Virtual SAN Appliance CVE-2013-2343 Remote Arbitrary Code Execution Vulnerability
BID:60884
Info
HP LeftHand Virtual SAN Appliance CVE-2013-2343 Remote Arbitrary Code Execution Vulnerability
| Bugtraq ID: | 60884 |
| Class: | Unknown |
| CVE: |
CVE-2013-2343 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 02 2013 12:00AM |
| Updated: | Aug 13 2013 05:56AM |
| Credit: | TippingPoint's Zero Day Initiative |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
HP LeftHand Virtual SAN Appliance CVE-2013-2343 Remote Arbitrary Code Execution Vulnerability
HP LeftHand Virtual SAN Appliance is prone to a remote code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of the affected device. Failed exploit attempts will likely result in denial-of-service conditions.
Versions prior to HP LeftHand Virtual SAN Appliance 10.0 are vulnerable.
HP LeftHand Virtual SAN Appliance is prone to a remote code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of the affected device. Failed exploit attempts will likely result in denial-of-service conditions.
Versions prior to HP LeftHand Virtual SAN Appliance 10.0 are vulnerable.
Exploit / POC
HP LeftHand Virtual SAN Appliance CVE-2013-2343 Remote Arbitrary Code Execution Vulnerability
The following metasploit module is available:
The following metasploit module is available:
Solution / Fix
HP LeftHand Virtual SAN Appliance CVE-2013-2343 Remote Arbitrary Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
HP LeftHand Virtual SAN Appliance CVE-2013-2343 Remote Arbitrary Code Execution Vulnerability
References:
References:
- HP Homepage (HP)