Lucene search

K
saintSAINT CorporationSAINT:4E4A6968E75C8826AC36A45C37776B75
HistoryAug 16, 2007 - 12:00 a.m.

HP OpenView Operations OVTrace buffer overflow

2007-08-1600:00:00
SAINT Corporation
www.saintcorporation.com
12

0.924 High

EPSS

Percentile

99.0%

Added: 08/16/2007
CVE: CVE-2007-3872
BID: 25255
OSVDB: 39527

Background

HP OpenView Operations is event management and performance monitoring software.

Problem

A buffer overflow vulnerability in HP OpenView Operations allows remote attackers to execute arbitrary commands by sending a specially crafted request to the OVTrace service.

Resolution

See TPTI-07-14 for fix information.

References

<http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=574&gt;

Limitations

Exploit works on HP OpenView Internet Service (OVIS) 6.00.081.

Platforms

Windows 2000
Windows Server 2003

0.924 High

EPSS

Percentile

99.0%