Lucene search

K
cveHpCVE-2009-4177
HistoryDec 10, 2009 - 10:30 p.m.

CVE-2009-4177

2009-12-1022:30:00
CWE-119
hp
web.nvd.nist.gov
29
cve-2009-4177
buffer overflow
webappmon.exe
hp openview network node manager
ov nnm
nvd
security vulnerability
remote code execution
http header

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.83

Percentile

98.4%

Buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long HTTP Host header.

Affected configurations

Nvd
Node
hpopenview_network_node_managerMatch7.0.1hp_ux
OR
hpopenview_network_node_managerMatch7.0.1linux
OR
hpopenview_network_node_managerMatch7.0.1solaris
OR
hpopenview_network_node_managerMatch7.0.1windows
OR
hpopenview_network_node_managerMatch7.51-hp-ux
OR
hpopenview_network_node_managerMatch7.51-linux
OR
hpopenview_network_node_managerMatch7.51-solaris
OR
hpopenview_network_node_managerMatch7.51-windows
OR
hpopenview_network_node_managerMatch7.53-hp-ux
OR
hpopenview_network_node_managerMatch7.53-linux
OR
hpopenview_network_node_managerMatch7.53-solaris
OR
hpopenview_network_node_managerMatch7.53-windows
VendorProductVersionCPE
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:hp_ux:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:linux:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:solaris:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:windows:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:hp-ux:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:linux:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:solaris:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:windows:*:*:*:*:*
hpopenview_network_node_manager7.53cpe:2.3:a:hp:openview_network_node_manager:7.53:-:hp-ux:*:*:*:*:*
hpopenview_network_node_manager7.53cpe:2.3:a:hp:openview_network_node_manager:7.53:-:linux:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.83

Percentile

98.4%