First published: Sun Feb 08 2009(Updated: )
HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via shell metacharacters in argument fields to the (1) webappmon.exe or (2) OpenView5.exe CGI program. NOTE: this issue may be partially covered by CVE-2009-0205.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.0.1 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.0.1 | |
HP OpenView Network Node Manager | =7.0.1 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.0.1 | |
HP OpenView Network Node Manager | =7.51 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4559 is classified as a critical vulnerability due to the potential for remote code execution.
To fix CVE-2008-4559, update HP OpenView Network Node Manager to the latest version provided by HP.
CVE-2008-4559 affects HP OpenView Network Node Manager versions 7.0.1, 7.51, and 7.53.
Yes, CVE-2008-4559 can be exploited remotely by attackers to execute arbitrary code.
The attack for CVE-2008-4559 involves the use of shell metacharacters in argument fields to specific CGI programs.