CVE-2008-1661 describes a critical stack-based buffer overflow vulnerability in DoubleTake.exe within HP StorageWorks Storage Mirroring (SWSM) versions prior to 4.5 SP2. This flaw allows unauthenticated remote attackers to execute arbitrary code on affected systems by sending a specially crafted authentication request. With a CVSS score of 10.0, this vulnerability is highly severe, requiring no authentication or complex attack methods, and grants full confidentiality, integrity, and availability compromise. While not currently on the CISA KEV catalog, public exploit modules exist for Metasploit, indicating readily available tools for exploitation, despite a lack of broader community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.5CPE matchmatch criteria | cpe:2.3:a:hp:storageworks_storage_mirroring:4.5:sp1:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.