← back
CVE-2016-2004

CVE-2016-2004

60Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 94%
from disclosure to weapon35 days
Published on NVDApr 21
1st PoC+35d
metasploitApr 18
exploitation probability
94%top 1% of all CVEs
observed exploitation
nono source reports it
6 public exploit(s)
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allow remote attackers to execute arbitrary code via unspecified vectors related to lack of authentication. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2623.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.