First published: Thu Jun 10 2010(Updated: )
Buffer overflow in the error handling functionality in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long, invalid option to jovgraph.exe.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.51 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-1960 has a medium severity rating, indicating a significant risk to vulnerable systems.
To fix CVE-2010-1960, upgrade to a non-vulnerable version of HP OpenView Network Node Manager.
CVE-2010-1960 affects HP OpenView Network Node Manager versions 7.51 and 7.53 on various operating systems including Windows, Linux, Solaris, and HP-UX.
CVE-2010-1960 can be exploited by remote attackers to execute arbitrary code through a specially crafted request.
As of the last updates, there were indications that CVE-2010-1960 had potential for exploitation, but specific active attacks may vary over time.