Lucene search

K
cveMitreCVE-2008-4559
HistoryFeb 08, 2009 - 9:30 p.m.

CVE-2008-4559

2009-02-0821:30:00
CWE-20
mitre
web.nvd.nist.gov
39
hp
openview
nnm
remote code execution
cve-2008-4559
webappmon.exe
openview5.exe

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.045

Percentile

92.7%

HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via shell metacharacters in argument fields to the (1) webappmon.exe or (2) OpenView5.exe CGI program. NOTE: this issue may be partially covered by CVE-2009-0205.

Affected configurations

Nvd
Node
hpopenview_network_node_managerMatch7.0.1hp_ux
OR
hpopenview_network_node_managerMatch7.0.1linux
OR
hpopenview_network_node_managerMatch7.0.1solaris
OR
hpopenview_network_node_managerMatch7.0.1windows
OR
hpopenview_network_node_managerMatch7.51-hp-ux
OR
hpopenview_network_node_managerMatch7.51-linux
OR
hpopenview_network_node_managerMatch7.51-solaris
OR
hpopenview_network_node_managerMatch7.51-windows
OR
hpopenview_network_node_managerMatch7.53-hp-ux
OR
hpopenview_network_node_managerMatch7.53-linux
OR
hpopenview_network_node_managerMatch7.53-solaris
OR
hpopenview_network_node_managerMatch7.53-windows
VendorProductVersionCPE
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:hp_ux:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:linux:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:solaris:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:windows:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:hp-ux:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:linux:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:solaris:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:windows:*:*:*:*:*
hpopenview_network_node_manager7.53cpe:2.3:a:hp:openview_network_node_manager:7.53:-:hp-ux:*:*:*:*:*
hpopenview_network_node_manager7.53cpe:2.3:a:hp:openview_network_node_manager:7.53:-:linux:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.045

Percentile

92.7%