7.5
CVSSv2

CVE-2010-1964

Published: 17/06/2010 Updated: 10/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote malicious users to execute arbitrary code via unspecified parameters to jovgraph.exe, aka ZDI-CAN-683.

Vulnerable Product Search on Vulmon Subscribe to Product

hp openview network node manager 7.53

hp openview network node manager 7.51

Exploits

# Exploit Title: HP NNM 753 ovwebsnmpsrvexe Buffer Overflow (SEH) # Date: 07/06/2010 # Author: bitform # Software Link: hpcom # Version: 753 # Tested on: Windows XP SP2 # CVE: CVE-2010-1964 # Exploit: C:\Program Files\HP OpenView\www\bin\ovwebsnmpsrvexe -dump AAAAAAAAAAAAUXf-9Tf-9Tf-9TU\AAAAAAAAAAAAAAAAAAAAAPYIIIIIIIIIIIIIIII7QZjAXP0A0AkAAQ2 ...
## # $Id: hp_nnm_ovwebsnmpsrv_mainrb 12097 2011-03-23 15:45:48Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/cor ...
This Metasploit module exploits a stack buffer overflow in HP OpenView Network Node Manager 753 prior to NNM_01203 By specifying a long 'arg' parameter when executing the 'jovgraphexe' CGI program, an attacker can cause a stack-based buffer overflow and execute arbitrary code This vulnerability is triggerable via either a GET or POST request I ...
HP NNM version 753 suffers from a buffer overflow vulnerability in ovwebsnmpsrvexe ...