First published: Thu Jan 13 2011(Updated: )
Format string vulnerability in nnmRptConfig.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via format string specifiers in input data that involves an invalid template name.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.53 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0270 is rated as a critical vulnerability due to its ability to allow remote attackers to execute arbitrary code.
To mitigate CVE-2011-0270, upgrade HP OpenView Network Node Manager to versions 7.54 or later, which are not affected.
CVE-2011-0270 affects HP OpenView Network Node Manager versions 7.51 and 7.53.
Yes, CVE-2011-0270 can be exploited remotely through crafted input data that includes malicious format string specifiers.
Exploitation of CVE-2011-0270 can lead to arbitrary code execution, potentially compromising system integrity and confidentiality.