Release DateDec 17, 2009 |
Severitycritical |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attack attempt against a code-execution vulnerability inHP Operations Manager. The vulnerability is caused by a hidden account in the vulnerable software that lets malicious users upload packages to the server. |
Affected ProductsHP Operations Manager 8.1 |
Recommended ActionsUpgrade to the latest version, available from the vendor's website. |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2009-3843 |
Reference/shttp://www.securityfocus.com/bid/37086 (BugTraq)http://www.zerodayinitiative.com/advisories/ZDI-09-085/ |