Lucene search

K
cveMitreCVE-2009-2685
HistoryNov 06, 2009 - 3:30 p.m.

CVE-2009-2685

2009-11-0615:30:00
CWE-119
mitre
web.nvd.nist.gov
45
cve-2009-2685
stack-based buffer overflow
hp power manager
remote code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.9

Confidence

High

EPSS

0.594

Percentile

97.8%

Stack-based buffer overflow in the login form in the management web server in HP Power Manager allows remote attackers to execute arbitrary code via the Login variable.

Affected configurations

Nvd
Node
hppower_manager
VendorProductVersionCPE
hppower_manager*cpe:2.3:a:hp:power_manager:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.9

Confidence

High

EPSS

0.594

Percentile

97.8%