CVE-2010-2703: Buffer Overflow
Published Jul 27, 2010
·Updated
Stack-based buffer overflow in the execvpnc function in the ov.dll module in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when running on Windows, allows remote attackers to execute arbitrary code via a long HTTP request to webappmon.exe.
Affected Software
3 affected components
Hewlett Packard OpenView Network Node Manager=7.51
Hewlett Packard OpenView Network Node Manager=7.53
Microsoft Windows
Remediation
Patch Available
Event History
Jul 27, 2010
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Jul 28, 2010
Data Sourced
12:48 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-2703?
CVE-2010-2703 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2010-2703?
To fix CVE-2010-2703, upgrade HP OpenView Network Node Manager to version 7.54 or later.
3
What software is affected by CVE-2010-2703?
CVE-2010-2703 affects HP OpenView Network Node Manager versions 7.51 and 7.53 on Windows.
4
Can CVE-2010-2703 be exploited remotely?
Yes, CVE-2010-2703 can be exploited remotely through a specially crafted HTTP request.
5
What kind of attack does CVE-2010-2703 facilitate?
CVE-2010-2703 facilitates a stack-based buffer overflow attack that allows arbitrary code execution.