Lucene search

K
nvd[email protected]NVD:CVE-2009-2685
HistoryNov 06, 2009 - 3:30 p.m.

CVE-2009-2685

2009-11-0615:30:00
CWE-119
web.nvd.nist.gov
5

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.594

Percentile

97.8%

Stack-based buffer overflow in the login form in the management web server in HP Power Manager allows remote attackers to execute arbitrary code via the Login variable.

Affected configurations

Nvd
Node
hppower_manager
VendorProductVersionCPE
hppower_manager*cpe:2.3:a:hp:power_manager:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.594

Percentile

97.8%