Vulnerabilities > HP > Openview Network Node Manager > 7.53

DATE CVE VULNERABILITY TITLE RISK
2008-10-13 CVE-2008-3544 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in HP Openview Network Node Manager
Multiple stack-based buffer overflows in ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.51, and possibly 7.01, 7.50, and 7.53, allow remote attackers to execute arbitrary code via a long (1) REQUEST_SEV_CHANGE (aka number 47), (2) REQUEST_SAVE_STATE (aka number 61), or (3) REQUEST_RESTORE_STATE (aka number 62) request to TCP port 2954.
network
low complexity
hp CWE-119
critical
9.0
2008-09-03 CVE-2008-3537 Denial of Service vulnerability in HP OpenView Network Node Manager 7.01/7.51/7.53
Unspecified vulnerability in ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to cause a denial of service via unknown vectors, a different vulnerability than CVE-2008-3536.
network
low complexity
hp
7.8
2008-09-03 CVE-2008-3536 Denial of Service vulnerability in HP OpenView Network Node Manager 7.01/7.51/7.53
Unspecified vulnerability in ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to cause a denial of service via unknown vectors, a different vulnerability than CVE-2008-3537.
network
low complexity
hp
7.8
2008-04-16 CVE-2008-1853 Resource Management Errors vulnerability in HP Openview Network Node Manager 7.51/7.53
The ovtopmd service in HP OpenView Network Node Manager (OV NNM) 7.51, 7.53, and possibly other versions allows remote attackers to cause a denial of service (exit) by sending a 0x36 packet (exit request).
network
hp CWE-399
4.3
2008-04-16 CVE-2008-1852 Resource Management Errors vulnerability in HP Openview Network Node Manager 7.51/7.53
ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.51, 7.53, and possibly other versions allows remote attackers to cause a denial of service (crash) via certain requests that specify a large number of sub-arguments, which triggers a NULL pointer dereference due to memory allocation failure.
network
low complexity
hp CWE-399
7.8
2008-04-16 CVE-2008-1851 Resource Management Errors vulnerability in HP Openview Network Node Manager 7.51/7.53
ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.51, 7.53, and possibly other versions allows remote attackers to cause a denial of service (hang) via certain requests that do not provide all required arguments.
network
low complexity
hp CWE-399
5.0
2008-04-16 CVE-2008-0068 Path Traversal vulnerability in HP Openview Network Node Manager 7.51/7.53
Directory traversal vulnerability in OpenView5.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to read arbitrary files via directory traversal sequences in the Action parameter.
network
low complexity
hp CWE-22
5.0
2008-04-16 CVE-2008-1842 Numeric Errors vulnerability in HP Openview Network Node Manager
Integer signedness error in ovspmd.exe in HP OpenView Network Node Manager (OV NNM) 8.01, and 7.53 and earlier, allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a long request to TCP port 8886 that begins with a certain negative integer, which passes a signed comparison and triggers a heap-based buffer overflow.
network
low complexity
hp CWE-189
critical
10.0
2008-04-08 CVE-2008-1697 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in HP Openview Network Node Manager
Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows remote attackers to execute arbitrary code via a long URI in an HTTP request processed by ovas.exe, as demonstrated by a certain topology/homeBaseView request.
network
low complexity
hp CWE-119
critical
10.0