CVE-2010-4113: Buffer Overflow
Published Dec 22, 2010
·Updated
Stack-based buffer overflow in HP Power Manager (HPPM) before 4.3.2 allows remote attackers to execute arbitrary code via a long Login variable to the management web server.
Affected Software
5 affected components
hp Power Manager<=4.2.9
hp Power Manager=4.2.5
hp Power Manager=4.2.8
hp Power Manager=4.2.6
hp Power Manager=4.2.7
Event History
Dec 22, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-4113?
CVE-2010-4113 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2010-4113?
To mitigate CVE-2010-4113, upgrade HP Power Manager to version 4.3.2 or later.
3
What attacks can be executed through CVE-2010-4113?
CVE-2010-4113 allows remote attackers to exploit a stack-based buffer overflow to execute arbitrary code.
4
Which versions of HP Power Manager are affected by CVE-2010-4113?
CVE-2010-4113 affects HP Power Manager versions prior to 4.3.2, including versions 4.2.5 through 4.2.9.
5
Can CVE-2010-4113 be exploited without authentication?
Yes, CVE-2010-4113 can be exploited by remote attackers without requiring authentication.