Release DateAug 25, 2009 |
Severitycritical |
ImpactSystem compromise |
DescriptionThis indicates an attack attempt against a buffer-overflow vulnerability in HP Network Node Manager.The vulnerability is caused by an error when the vulnerable software handles a specially crafted HTTP request. It allows a remote attacker to execute arbitrary code. |
Affected ProductsHP OpenView Network Node Manager (OV NNM) version 7.51HP OpenView Network Node Manager (OV NNM) version 7.53 |
Recommended ActionsApply the patch supplied by the vendor:http://support.openview.hp.com/selfsolve/patches |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2009-1420 |
Reference/shttp://www.frsirt.com/english/advisories/2009/1549 (FrSIRT)http://www.securityfocus.com/bid/35267 (BugTraq) |