Security Advisory
CVE-2014-5160
6.4
Vulnerability Description
Multiple directory traversal vulnerabilities in crs.exe in the Cell Request Service in HP Data Protector allow remote attackers to create arbitrary files via an opcode-1091 request, or create or delete arbitrary files via an opcode-305 request. NOTE: the vendor reportedly asserts that this behavior is "by design.
Published Date
August 1, 2014
Official Source
NIST NVD Advisory