>> HP OpenView Network Node Manager Code EXecution Vulnerabilities
Title : HP OpenView Network Node Manager Code EXecution Vulnerabilities VUPEN ID : VUPEN/ADV-2007-4111 CVE ID : CVE-2007-6204
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-12-07
Technical Description
Multiple vulnerabilities have been identified in HP OpenView Network Node Manager (OV NNM), which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. These issues are caused by buffer overflow errors in the "ovlogin.exe", "OpenView5.exe", "snmpviewer.exe", and "webappmon.exe" CGI applications when processing overly long arguments, which could be exploited by remote attackers to crash a vulnerable application or execute arbitrary code with the privileges of the server.