Vulnerabilities > CVE-2007-3872 - Remote Buffer Overflow vulnerability in HP Openview Operations and Shared Trace Service

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
hp
nessus
exploit available
metasploit

Summary

Multiple stack-based buffer overflows in the Shared Trace Service (OVTrace) service for HP OpenView Operations A.07.50 for Windows, and possibly earlier versions, allow remote attackers to execute arbitrary code via certain crafted requests.

Vulnerable Configurations

Part Description Count
Application
Hp
3

Exploit-Db

descriptionHP OpenView Operations OVTrace Buffer Overflow. CVE-2007-3872. Remote exploit for windows platform
idEDB-ID:16429
last seen2016-02-01
modified2010-06-22
published2010-06-22
reportermetasploit
sourcehttps://www.exploit-db.com/download/16429/
titleHP OpenView Operations OVTrace Buffer Overflow

Metasploit

descriptionThis module exploits a stack buffer overflow in HP OpenView Operations version A.07.50. By sending a specially crafted packet, a remote attacker may be able to execute arbitrary code.
idMSF:EXPLOIT/WINDOWS/MISC/HP_OVTRACE
last seen2020-04-11
modified2017-07-24
published2007-08-19
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3872
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/misc/hp_ovtrace.rb
titleHP OpenView Operations OVTrace Buffer Overflow

Nessus

  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_36278.NASL
    descriptions700_800 11.X OV OVO8.X EventAction Linux A.08.17 : A potential security vulnerability has been identified in HP OpenView Operations (OVO) Agents running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
    last seen2020-06-01
    modified2020-06-02
    plugin id26151
    published2007-09-25
    reporterThis script is Copyright (C) 2007-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/26151
    titleHP-UX PHSS_36278 : HP OpenView Operations (OVO) Agents Running Shared Trace Service, Remote Arbitrary Code Execution (HPSBMA02239 SSRT061260 rev.3)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_36773.NASL
    descriptions700_800 11.X OV NNM7.01 Intermediate Patch 11 : The remote HP-UX host is affected by multiple vulnerabilities : - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). This vulnerability could by exploited remotely to allow cross site scripting (XSS). (HPSBMA02283 SSRT071319) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). This vulnerability could be exploited remotely by an unauthorized user to execute arbitrary code with the permissions of the NNM server. (HPSBMA02281 SSRT061261) - Potential vulnerabilities have been identified with HP OpenView Network Node Manager (OV NNM). The vulnerabilities could be exploited remotely to create a Denial of Service (DoS) or to execute arbitrary code. References: CVE-2008-3536, CVE-2008-3537, CVE-2008-3544 (Bugtraq ID 28668). (HPSBMA02362 SSRT080044, SSRT080045, SSRT080042) - Potential vulnerabilities have been identified with HP OpenView Network Node Manager (OV NNM) running Apache. These vulnerabilities could be exploited remotely resulting in cross site scripting (XSS), Denial of Service (DoS), or execution of arbitrary code. (HPSBMA02328 SSRT071293) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM) running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code. (HPSBMA02242 SSRT061260) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). The vulnerability could be exploited remotely to execute arbitrary code or to create a Denial of Service (DoS). (HPSBMA02348 SSRT080033)
    last seen2020-06-01
    modified2020-06-02
    plugin id26896
    published2007-10-03
    reporterThis script is Copyright (C) 2007-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/26896
    titleHP-UX PHSS_36773 : s700_800 11.X OV NNM7.01 Intermediate Patch 11
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_37397.NASL
    descriptions700_800 11.X OV OVO8.X Core Agt HPUX 11 PA A.08.17.3 : A potential security vulnerability has been identified in HP OpenView Operations (OVO) Agents running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
    last seen2020-06-01
    modified2020-06-02
    plugin id29971
    published2008-01-15
    reporterThis script is Copyright (C) 2008-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/29971
    titleHP-UX PHSS_37397 : HP OpenView Operations (OVO) Agents Running Shared Trace Service, Remote Arbitrary Code Execution (HPSBMA02239 SSRT061260 rev.3)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_37336.NASL
    descriptions700_800 11.X OV OVO8.X Core Agt AIX A.08.17.3 : A potential security vulnerability has been identified in HP OpenView Operations (OVO) Agents running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
    last seen2020-06-01
    modified2020-06-02
    plugin id29970
    published2008-01-15
    reporterThis script is Copyright (C) 2008-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/29970
    titleHP-UX PHSS_37336 : HP OpenView Operations (OVO) Agents Running Shared Trace Service, Remote Arbitrary Code Execution (HPSBMA02239 SSRT061260 rev.3)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_36901.NASL
    descriptions700_800 11.X OV NNM7.51 PA-RISC Intermediate Patch 17 : The remote HP-UX host is affected by multiple vulnerabilities : - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). This vulnerability could be exploited remotely by an unauthorized user to execute arbitrary code with the permissions of the NNM server. (HPSBMA02281 SSRT061261) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM) running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code. (HPSBMA02242 SSRT061260) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). This vulnerability could by exploited remotely to allow cross site scripting (XSS). (HPSBMA02283 SSRT071319)
    last seen2020-06-01
    modified2020-06-02
    plugin id26897
    published2007-10-03
    reporterThis script is Copyright (C) 2007-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/26897
    titleHP-UX PHSS_36901 : s700_800 11.X OV NNM7.51 PA-RISC Intermediate Patch 17
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_35457.NASL
    descriptions700_800 11.X OV OVO8.X Core Agt Tru64 A.08.17 : A potential security vulnerability has been identified in HP OpenView Operations (OVO) Agents running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
    last seen2020-06-01
    modified2020-06-02
    plugin id28269
    published2007-11-20
    reporterThis script is Copyright (C) 2007-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/28269
    titleHP-UX PHSS_35457 : HP OpenView Operations (OVO) Agents Running Shared Trace Service, Remote Arbitrary Code Execution (HPSBMA02239 SSRT061260 rev.3)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_37398.NASL
    descriptions700_800 11.X OV OVO8.X Core Agt Solaris A.08.17.3 : A potential security vulnerability has been identified in HP OpenView Operations (OVO) Agents running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
    last seen2020-06-01
    modified2020-06-02
    plugin id29972
    published2008-01-15
    reporterThis script is Copyright (C) 2008-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/29972
    titleHP-UX PHSS_37398 : HP OpenView Operations (OVO) Agents Running Shared Trace Service, Remote Arbitrary Code Execution (HPSBMA02239 SSRT061260 rev.3)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_37335.NASL
    descriptions700_800 11.X OV OVO8.X Core Agt Windows A.08.17.3 : A potential security vulnerability has been identified in HP OpenView Operations (OVO) Agents running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
    last seen2020-06-01
    modified2020-06-02
    plugin id29969
    published2008-01-15
    reporterThis script is Copyright (C) 2008-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/29969
    titleHP-UX PHSS_37335 : HP OpenView Operations (OVO) Agents Running Shared Trace Service, Remote Arbitrary Code Execution (HPSBMA02239 SSRT061260 rev.3)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_36902.NASL
    descriptions700_800 11.X OV NNM7.51 IA-64 Intermediate Patch 17 : The remote HP-UX host is affected by multiple vulnerabilities : - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). This vulnerability could be exploited remotely by an unauthorized user to execute arbitrary code with the permissions of the NNM server. (HPSBMA02281 SSRT061261) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). This vulnerability could by exploited remotely to allow cross site scripting (XSS). (HPSBMA02283 SSRT071319) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM) running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code. (HPSBMA02242 SSRT061260)
    last seen2020-06-01
    modified2020-06-02
    plugin id26898
    published2007-10-03
    reporterThis script is Copyright (C) 2007-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/26898
    titleHP-UX PHSS_36902 : s700_800 11.X OV NNM7.51 IA-64 Intermediate Patch 17
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_37141.NASL
    descriptions700_800 11.X OV NNM6.4x/ET2.0x Intermediate Patch 17 : The remote HP-UX host is affected by multiple vulnerabilities : - Potential vulnerabilities have been identified with HP OpenView Network Node Manager (OV NNM) running Apache. These vulnerabilities could be exploited remotely resulting in cross site scripting (XSS), Denial of Service (DoS), or execution of arbitrary code. (HPSBMA02328 SSRT071293) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). This vulnerability could be exploited remotely by an unauthorized user to execute arbitrary code with the permissions of the NNM server. (HPSBMA02281 SSRT061261) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM) running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code. (HPSBMA02242 SSRT061260) - A potential security vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). The vulnerability could be exploited remotely to create a Denial of Service (DoS). (HPSBMA02307 SSRT071420) - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM). This vulnerability could by exploited remotely to allow cross site scripting (XSS). (HPSBMA02283 SSRT071319)
    last seen2020-06-01
    modified2020-06-02
    plugin id29200
    published2007-12-04
    reporterThis script is Copyright (C) 2007-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/29200
    titleHP-UX PHSS_37141 : s700_800 11.X OV NNM6.4x/ET2.0x Intermediate Patch 17
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_37399.NASL
    descriptions700_800 11.X OV OVO8.X Core Agt HPUX 11 IA A.08.17.3 : A potential security vulnerability has been identified in HP OpenView Operations (OVO) Agents running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
    last seen2020-06-01
    modified2020-06-02
    plugin id29973
    published2008-01-15
    reporterThis script is Copyright (C) 2008-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/29973
    titleHP-UX PHSS_37399 : HP OpenView Operations (OVO) Agents Running Shared Trace Service, Remote Arbitrary Code Execution (HPSBMA02239 SSRT061260 rev.3)

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/82951/hp_ovtrace.rb.txt
idPACKETSTORM:82951
last seen2016-12-05
published2009-11-26
reporterMC
sourcehttps://packetstormsecurity.com/files/82951/HP-OpenView-Operations-OVTrace-Buffer-Overflow.html
titleHP OpenView Operations OVTrace Buffer Overflow

Saint

bid25255
descriptionHP OpenView Operations OVTrace buffer overflow
idnet_openview_ovtracesbo
osvdb39527
titleopenview_ovtrace
typeremote