Vulnerabilities > HP > Openview Network Node Manager

DATE CVE VULNERABILITY TITLE RISK
2009-11-19 CVE-2009-3977 Buffer Errors vulnerability in HP Openview Network Node Manager 7.53
Multiple buffer overflows in a certain ActiveX control in ActiveDom.ocx in HP OpenView Network Node Manager (OV NNM) 7.53 might allow remote attackers to cause a denial of service (memory corruption) or have unspecified other impact via a long string argument to the (1) DisplayName, (2) AddGroup, (3) InstallComponent, or (4) Subscribe method.
network
low complexity
hp CWE-119
5.0
2009-11-19 CVE-2009-3840 Denial of Service vulnerability in HP OpenView Network Node Manager 'ovdbrun.exe'
The embedded database engine service (aka ovdbrun.exe) in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to cause a denial of service (daemon crash) via an invalid Error Code field in a packet.
network
low complexity
hp
5.0
2009-07-02 CVE-2009-2298 Buffer Errors vulnerability in HP Openview Network Node Manager 7.53
Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.53 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, possibly involving a CGI request to webappmon.exe.
network
low complexity
hp CWE-119
7.5
2009-06-11 CVE-2009-1420 Stack Buffer Overflow vulnerability in HP OpenView Network Node Manager 'rping'
Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when used with SNMP (aka HPOvNNM.HPOVSNMP) before 1.30.009 and MIB (aka HPOvNNM.HPOVMIB) before 1.30.009, allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.
network
low complexity
hp
critical
10.0
2009-05-05 CVE-2009-0720 Code Injection vulnerability in HP Openview Network Node Manager 7.01/7.51/7.53
Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via unknown vectors.
network
low complexity
hp CWE-94
critical
10.0
2009-04-28 CVE-2008-2438 Numeric Errors vulnerability in HP Openview Network Node Manager 7.01/7.51/7.53
Integer overflow in ovalarmsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a crafted command to TCP port 2954, which triggers a heap-based buffer overflow.
network
low complexity
hp CWE-189
critical
10.0
2009-02-08 CVE-2008-4562 Buffer Errors vulnerability in HP Openview Network Node Manager 7.0.1/7.51/7.53
Buffer overflow in the ovlaunch CGI program in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 on Windows allows remote attackers to execute arbitrary code via a crafted Host parameter.
network
low complexity
hp CWE-119
critical
10.0
2009-02-08 CVE-2008-4560 Information Exposure vulnerability in HP Openview Network Node Manager 7.0.1/7.51/7.53
HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to obtain sensitive information via (1) a crafted request to the nnmRptConfig.exe CGI program, which reveals the pathname of log directories; or (2) a crafted parameter in a request to the ovlaunch.exe CGI program, which reveals configuration details.
network
low complexity
hp CWE-200
7.8
2009-02-08 CVE-2008-4559 Improper Input Validation vulnerability in HP Openview Network Node Manager 7.0.1/7.51/7.53
HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via shell metacharacters in argument fields to the (1) webappmon.exe or (2) OpenView5.exe CGI program.
network
low complexity
hp CWE-20
critical
10.0
2009-01-08 CVE-2008-0067 Buffer Errors vulnerability in HP Openview Network Node Manager 7.51
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via (1) long string parameters to the OpenView5.exe CGI program; (2) a long string parameter to the OpenView5.exe CGI program, related to ov.dll; or a long string parameter to the (3) getcvdata.exe, (4) ovlaunch.exe, or (5) Toolbar.exe CGI program.
network
low complexity
hp CWE-119
critical
10.0