CVE-2008-4559: Input Validation
HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via shell metacharacters in argument fields to the (1) webappmon.exe or (2) OpenView5.exe CGI program. NOTE: this issue may be partially covered by CVE-2009-0205.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-4559?
CVE-2008-4559 is classified as a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2008-4559?
To fix CVE-2008-4559, update HP OpenView Network Node Manager to the latest version provided by HP.
What versions of HP OpenView Network Node Manager are affected by CVE-2008-4559?
CVE-2008-4559 affects HP OpenView Network Node Manager versions 7.0.1, 7.51, and 7.53.
Can CVE-2008-4559 be exploited remotely?
Yes, CVE-2008-4559 can be exploited remotely by attackers to execute arbitrary code.
What is the nature of the attack for CVE-2008-4559?
The attack for CVE-2008-4559 involves the use of shell metacharacters in argument fields to specific CGI programs.