This application requires Javascript for optimal performance.

HP.OpenView.NNM.ConnectedNodes.Ovpl.Command.Execution

Release Date

Dec 24, 2011

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems

Description

This indicates a possible attempt to exploit a Remote Command Execution vulnerability in HP OpenView Network Node Manager.

This vulnerability is due to the software's inability to properly sanitize user-supplied input. Remote attackers may exploit this to execute arbitrary commands.

Affected Products

HP OpenView Network Node Manager 7.50 and earlier versions.

Recommended Actions

Apply the appropriate patch as per the HP advisory HPSBMA01224 (SSRT051023 rev.0 - HP Openview Network Node Manager (OV NNM) Remote Unauthorized Access).

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2005-2773

Reference/s

http://www.securityfocus.com/bid/14662 (BugTraq)

Reference: VID-30429