Vulnerabilities > HP > Openview Network Node Manager > 6.41

DATE CVE VULNERABILITY TITLE RISK
2008-04-16 CVE-2008-1842 Numeric Errors vulnerability in HP Openview Network Node Manager
Integer signedness error in ovspmd.exe in HP OpenView Network Node Manager (OV NNM) 8.01, and 7.53 and earlier, allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a long request to TCP port 8886 that begins with a certain negative integer, which passes a signed comparison and triggers a heap-based buffer overflow.
network
low complexity
hp CWE-189
critical
10.0
2008-04-08 CVE-2008-1697 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in HP Openview Network Node Manager
Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows remote attackers to execute arbitrary code via a long URI in an HTTP request processed by ovas.exe, as demonstrated by a certain topology/homeBaseView request.
network
low complexity
hp CWE-119
critical
10.0
2008-02-06 CVE-2008-0212 Resource Management Errors vulnerability in HP Openview Network Node Manager 6.41/7.01/7.51
ovtopmd in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allows remote attackers to cause a denial of service (crash) via a crafted TCP request that triggers an out-of-bounds memory access.
network
low complexity
hp linux microsoft sun CWE-399
7.8
2007-12-13 CVE-2007-6343 Cross-Site Scripting vulnerability in HP Openview Network Node Manager 6.41/7.0.1/7.51
Cross-site scripting (XSS) vulnerability in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hp CWE-79
4.3
2007-12-13 CVE-2007-6204 Buffer Errors vulnerability in HP Openview Network Node Manager 6.41/7.0.1/7.51
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to OpenView5.exe.
network
low complexity
hp CWE-119
critical
10.0
2007-01-23 CVE-2007-0441 Remote Security vulnerability in OpenView Network Node Manager
Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 6.20, 6.4x, 7.01, and 7.50 allows remote attackers to execute arbitrary commands via unknown vectors.
network
high complexity
hp
5.1
2007-01-12 CVE-2007-0206 Information Disclosure vulnerability in Hewlett Packard OpenView Network Node Manager
Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 6.20, 6.4x, 7.01, and 7.50 allows remote attackers to read arbitrary files via unknown vectors.
network
low complexity
hp
5.0
2005-09-02 CVE-2005-2773 Remote Command Execution vulnerability in HP OpenView Network Node Manager
HP OpenView Network Node Manager 6.2 through 7.50 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) node parameter to connectedNodes.ovpl, (2) cdpView.ovpl, (3) freeIPaddrs.ovpl, and (4) ecscmg.ovpl.
network
low complexity
hp
7.5
2003-12-31 CVE-2003-1493 Denial Of Service vulnerability in HP OpenView Network Node Manager
Memory leak in HP OpenView Network Node Manager (NNM) 6.2 and 6.4 allows remote attackers to cause a denial of service (memory exhaustion) via crafted TCP packets.
network
low complexity
hp
5.0