Lucene search

K
nvd[email protected]NVD:CVE-2007-2280
HistoryDec 18, 2009 - 7:30 p.m.

CVE-2007-2280

2009-12-1819:30:00
CWE-119
web.nvd.nist.gov
2

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.961

Percentile

99.5%

Stack-based buffer overflow in OmniInet.exe (aka the backup client service daemon) in the Application Recovery Manager component in HP OpenView Storage Data Protector 5.50 and 6.0 allows remote attackers to execute arbitrary code via an MSG_PROTOCOL command with long arguments, a different vulnerability than CVE-2009-3844.

Affected configurations

Nvd
Node
hpopenview_storage_data_protectorMatch5.50
OR
hpopenview_storage_data_protectorMatch6.0
VendorProductVersionCPE
hpopenview_storage_data_protector5.50cpe:2.3:a:hp:openview_storage_data_protector:5.50:*:*:*:*:*:*:*
hpopenview_storage_data_protector6.0cpe:2.3:a:hp:openview_storage_data_protector:6.0:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.961

Percentile

99.5%