Vulnerability record · CVE-2013-2328 · published 6 June 2013
CVE-2013-2328: HP Storage Data Protector remote code execution flaw
Hp · Storage Data Protector
HP Storage Data Protector versions 6.20, 6.21, 7.00 and 7.01 contain an unspecified vulnerability that allows remote code execution. The record gives no root cause, no affected component and no attack vector detail beyond the CVSS vector, so defenders must rely on the vendor advisory for specifics.
Description
Unspecified vulnerability in HP Storage Data Protector 6.20, 6.21, 7.00, and 7.01 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1636.
AV:N/AC:L/Au:N/C:C/I:C/A:C
Automated analysis
critical priorityCVSS 2.0 score of 10 with network-reachable, unauthenticated remote code execution on backup infrastructure, plus a very high EPSS percentile, warrants critical priority despite the thin technical detail.
What it is
HP Storage Data Protector versions 6.20, 6.21, 7.00 and 7.01 contain an unspecified vulnerability that allows remote code execution. The record gives no root cause, no affected component and no attack vector detail beyond the CVSS vector, so defenders must rely on the vendor advisory for specifics.
Impact
A remote attacker can execute arbitrary code on the affected Data Protector system, which per the CVSS vector yields full compromise of confidentiality, integrity and availability. Because Data Protector is backup infrastructure, such access can expose or destroy backed-up data.
Attack surface
The CVSS vector AV:N/AC:L/Au:N indicates the flaw is reachable over the network with no authentication and no user interaction. The description does not identify which service or port is involved.
Exploitation
The CVE is not listed in CISA KEV and no reference is tagged as exploit code, though EPSS gives a 30-day probability of 0.61043 (99th percentile), suggesting elevated likelihood of attempted exploitation. No public exploit details are provided in this record.
What to do
- Apply the HP vendor advisory fix for the affected Data Protector versions (6.20, 6.21, 7.00, 7.01) as the first action.
- Restrict network access to Data Protector management and agent ports to trusted hosts only.
- Segment backup infrastructure from general user and internet-facing networks.
- Monitor HP advisories for updated guidance since the root cause is unspecified.
Detection
- Monitor Data Protector service and agent logs for unexpected process execution or crashes.
- Alert on anomalous network connections to Data Protector ports from untrusted sources.
- Watch for unusual child processes spawned by Data Protector services on backup servers.
This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
Track CVE-2013-2328 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2013-2328), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.