Vulnerabilities > CVE-2012-2019 - Unspecified vulnerability in HP Operations Agent

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
hp
critical
exploit available
metasploit

Summary

Unspecified vulnerability in HP Operations Agent before 11.03.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1325.

Exploit-Db

descriptionHP Operations Agent Opcode coda.exe 0x34 Buffer Overflow. CVE-2012-2019. Remote exploit for windows platform
idEDB-ID:22306
last seen2016-02-02
modified2012-10-29
published2012-10-29
reportermetasploit
sourcehttps://www.exploit-db.com/download/22306/
titleHP Operations Agent - Opcode coda.exe 0x34 Buffer Overflow

Metasploit

descriptionThis module exploits a buffer overflow vulnerability in HP Operations Agent for Windows. The vulnerability exists in the HP Software Performance Core Program component (coda.exe) when parsing requests for the 0x34 opcode. This module has been tested successfully on HP Operations Agent 11.00 over Windows XP SP3 and Windows 2003 SP2 (DEP bypass). The coda.exe components runs only for localhost by default, network access must be granted through its configuration to be remotely exploitable. On the other hand it runs on a random TCP port, to make easier reconnaissance a check function is provided.
idMSF:EXPLOIT/WINDOWS/MISC/HP_OPERATIONS_AGENT_CODA_34
last seen2020-03-18
modified2017-07-24
published2012-10-27
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2019
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/misc/hp_operations_agent_coda_34.rb
titleHP Operations Agent Opcode coda.exe 0x34 Buffer Overflow

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/117729/hp_operations_agent_coda_34.rb.txt
idPACKETSTORM:117729
last seen2016-12-05
published2012-10-28
reporterLuigi Auriemma
sourcehttps://packetstormsecurity.com/files/117729/HP-Operations-Agent-Opcode-coda.exe-0x34-Buffer-Overflow.html
titleHP Operations Agent Opcode coda.exe 0x34 Buffer Overflow

Saint

bid54362
descriptionHP Operations Agent Opcode 0x34 vulnerability
idmisc_hpoperationsagentver
osvdb83673
titlehp_operations_agent_opcode_34
typeremote