Lucene search

K
cveHpCVE-2009-4179
HistoryDec 10, 2009 - 10:30 p.m.

CVE-2009-4179

2009-12-1022:30:00
CWE-119
hp
web.nvd.nist.gov
30
cve
2009
buffer overflow
ovalarm.exe
hp openview network node manager
remote code execution
nvd
vulnerability

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.944

Percentile

99.3%

Stack-based buffer overflow in ovalarm.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long HTTP Accept-Language header in an OVABverbose action.

Affected configurations

Nvd
Node
hpopenview_network_node_managerMatch7.0.1hp_ux
OR
hpopenview_network_node_managerMatch7.0.1linux
OR
hpopenview_network_node_managerMatch7.0.1solaris
OR
hpopenview_network_node_managerMatch7.0.1windows
OR
hpopenview_network_node_managerMatch7.51-hp-ux
OR
hpopenview_network_node_managerMatch7.51-linux
OR
hpopenview_network_node_managerMatch7.51-solaris
OR
hpopenview_network_node_managerMatch7.51-windows
OR
hpopenview_network_node_managerMatch7.53-hp-ux
OR
hpopenview_network_node_managerMatch7.53-linux
OR
hpopenview_network_node_managerMatch7.53-solaris
OR
hpopenview_network_node_managerMatch7.53-windows
VendorProductVersionCPE
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:hp_ux:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:linux:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:solaris:*:*:*:*:*
hpopenview_network_node_manager7.0.1cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:windows:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:hp-ux:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:linux:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:solaris:*:*:*:*:*
hpopenview_network_node_manager7.51cpe:2.3:a:hp:openview_network_node_manager:7.51:-:windows:*:*:*:*:*
hpopenview_network_node_manager7.53cpe:2.3:a:hp:openview_network_node_manager:7.53:-:hp-ux:*:*:*:*:*
hpopenview_network_node_manager7.53cpe:2.3:a:hp:openview_network_node_manager:7.53:-:linux:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.944

Percentile

99.3%