9.3
CVSSv2

CVE-2010-2709

Published: 05/08/2010 Updated: 17/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 940
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote malicious users to execute arbitrary code via a long OvJavaLocale value in a cookie.

Vulnerable Product Search on Vulmon Subscribe to Product

hp openview network node manager 7.51

hp openview network node manager 7.53

Exploits

Core Security Technologies Advisory - There is a buffer overflow vulnerability in the webappmonexe CGI application included with HP OpenView NNM This bug can be exploited by sending a cookie header with a maliciously crafted 'OvJavaLocale' value Code execution is likely achievable in a reliable way ...
## # $Id: hp_nnm_webappmon_ovjavalocalerb 12087 2011-03-23 03:39:12Z sinn3r $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'm ...
HP OPENVIEW NNM OVJAVALOCALE BUFFER OVERFLOW VULNERABILITY 1 ADVISORY INFORMATION Title: HP OpenView NNM OvJavaLocale Buffer Overflow Vulnerability Advisory Id: CORE-2010-0608 Advisory URL: wwwcoresecuritycom/content/hp-nnm-ovjavalocale-buffer-overflow Date published: 2010-08-03 Date of last update: 2010-08-03 Vendors contacted: HP Relea ...