cbcvebase.

Hp Openview Network Node Manager vulnerabilities

80 known vulnerabilities affecting hp/openview_network_node_manager.

Total CVEs
80
CISA KEV
1
actively exploited
Public exploits
25
Exploited in wild
1
Severity breakdown
CRITICAL52HIGH11MEDIUM16LOW1

Vulnerabilities

Page 3 of 4
CVE-2009-4181P2CRITICALCVSS 10.0v7.0.1v7.51+1 more2009-12-10
CVE-2009-4181 [CRITICAL] CWE-119 CVE-2009-4181: Stack-based buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7 Stack-based buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via vectors involving the sel and arg parameters to jovgraph.exe.
nvd
CVE-2009-4177P3CRITICALCVSS 10.0v7.0.1v7.51+1 more2009-12-10
CVE-2009-4177 [CRITICAL] CWE-119 CVE-2009-4177: Buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 a Buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long HTTP Host header.
nvd
CVE-2010-1550P3CRITICALCVSS 10.0v7.0.1v7.51+1 more2010-05-13
CVE-2010-1550 [CRITICAL] CWE-134 CVE-2010-1550: Format string vulnerability in ovet_demandpoll.exe in HP OpenView Network Node Manager (OV NNM) 7.01 Format string vulnerability in ovet_demandpoll.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via format string specifiers in the sel parameter.
nvd
CVE-2010-2710P3CRITICALCVSS 10.0v7.51v7.532010-08-20
CVE-2010-2710 [CRITICAL] CVE-2010-2710: Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote a Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unknown vectors.
nvd
CVE-2009-3846P3CRITICALCVSS 10.0v7.0.1v7.51+1 more2009-12-10
CVE-2009-3846 [CRITICAL] CWE-119 CVE-2009-3846: Multiple heap-based buffer overflows in ovlogin.exe in HP OpenView Network Node Manager (OV NNM) 7.0 Multiple heap-based buffer overflows in ovlogin.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via a long (1) userid or (2) passwd parameter.
nvd
CVE-2009-4176P3CRITICALCVSS 10.0v7.0.1v7.51+1 more2009-12-10
CVE-2009-4176 [CRITICAL] CWE-119 CVE-2009-4176: Multiple heap-based buffer overflows in ovsessionmgr.exe in HP OpenView Network Node Manager (OV NNM Multiple heap-based buffer overflows in ovsessionmgr.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via a long (1) userid or (2) passwd parameter to ovlogin.exe.
nvd
CVE-2009-3847P3CRITICALCVSS 10.0v7.0.1v7.51+1 more2009-12-10
CVE-2009-3847 [CRITICAL] CVE-2009-3847: Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows r Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via unknown vectors.
nvd
CVE-2009-0720P3CRITICALCVSS 10.0v7.01v7.51+1 more2009-05-05
CVE-2009-0720 [CRITICAL] CWE-94 CVE-2009-0720: Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows r Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via unknown vectors.
nvd
CVE-2008-0068P3MEDIUMCVSS 5.0PoCv7.51v7.532008-04-16
CVE-2008-0068 [MEDIUM] CWE-22 CVE-2008-0068: Directory traversal vulnerability in OpenView5.exe in HP OpenView Network Node Manager (OV NNM) 7.01 Directory traversal vulnerability in OpenView5.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to read arbitrary files via directory traversal sequences in the Action parameter.
nvd
CVE-2009-1420P3CRITICALCVSS 10.0v7.51v7.532009-06-11
CVE-2009-1420 [CRITICAL] CVE-2009-1420: Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, whe Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when used with SNMP (aka HPOvNNM.HPOVSNMP) before 1.30.009 and MIB (aka HPOvNNM.HPOVMIB) before 1.30.009, allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.
nvd
CVE-2008-2438P3CRITICALCVSS 10.0v7.01v7.51+1 more2009-04-28
CVE-2008-2438 [CRITICAL] CWE-189 CVE-2008-2438: Integer overflow in ovalarmsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 Integer overflow in ovalarmsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a crafted command to TCP port 2954, which triggers a heap-based buffer overflow.
nvd
CVE-2008-4562P3CRITICALCVSS 10.0v7.0.1v7.51+1 more2009-02-08
CVE-2008-4562 [CRITICAL] CWE-119 CVE-2008-4562: Buffer overflow in the ovlaunch CGI program in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, Buffer overflow in the ovlaunch CGI program in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 on Windows allows remote attackers to execute arbitrary code via a crafted Host parameter. NOTE: this issue may be partially covered by CVE-2009-0205.
nvd
CVE-2009-3840P4MEDIUMCVSS 5.0PoCv7.51v7.532009-11-19
CVE-2009-3840 [MEDIUM] CVE-2009-3840: The embedded database engine service (aka ovdbrun.exe) in HP OpenView Network Node Manager (OV NNM) The embedded database engine service (aka ovdbrun.exe) in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to cause a denial of service (daemon crash) via an invalid Error Code field in a packet.
nvd
CVE-2000-1058P4MEDIUMCVSS 5.0PoCv4.11v5.01+1 more2000-12-11
CVE-2000-1058 [MEDIUM] CVE-2000-1058: Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier a Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the "Java SNMP MIB Browser Object ID parsing problem."
nvd
CVE-2009-2298P3HIGHCVSS 7.5v7.532009-07-02
CVE-2009-2298 [HIGH] CVE-2009-2298: Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.53 on Linux allo Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.53 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, possibly involving a CGI request to webappmon.exe. NOTE: this may overlap CVE-2009-1420.
nvd
CVE-2006-2580P3HIGHCVSS 7.5v6.4v6.20+2 more2006-05-24
CVE-2006-2580 [HIGH] CVE-2006-2580: Multiple unspecified vulnerabilities in HP OpenView Network Node Manager (OV NNM) 6.20, 6.4x, 7.01, Multiple unspecified vulnerabilities in HP OpenView Network Node Manager (OV NNM) 6.20, 6.4x, 7.01, and 7.50 allow remote attackers to gain privileged access, execute arbitrary commands, or create arbitrary files via unknown vectors.
nvd
CVE-2000-0558P3CRITICALCVSS 10.0v6.12000-06-06
CVE-2000-0558 [CRITICAL] CVE-2000-0558: Buffer overflow in HP Openview Network Node Manager 6.1 allows remote attackers to execute arbitrary Buffer overflow in HP Openview Network Node Manager 6.1 allows remote attackers to execute arbitrary commands via the Alarm service (OVALARMSRV) on port 2345.
nvd
CVE-2001-0629P4CRITICALCVSS 10.0v6.12001-08-14
CVE-2001-0629 [CRITICAL] CWE-119 CVE-2001-0629: HP Event Correlation Service (ecsd) as included with OpenView Network Node Manager 6.1 allows a rem HP Event Correlation Service (ecsd) as included with OpenView Network Node Manager 6.1 allows a remote attacker to gain addition privileges via a buffer overflow attack in the '-restore_config' command line parameter.
nvd
CVE-2008-0212P3HIGHCVSS 7.8v6.41v7.01+1 more2008-02-06
CVE-2008-0212 [HIGH] CWE-399 CVE-2008-0212: ovtopmd in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allows remote attackers to ovtopmd in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allows remote attackers to cause a denial of service (crash) via a crafted TCP request that triggers an out-of-bounds memory access.
nvd
CVE-2008-4560P3HIGHCVSS 7.8v7.0.1v7.51+1 more2009-02-08
CVE-2008-4560 [HIGH] CWE-200 CVE-2008-4560: HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to obtain sen HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to obtain sensitive information via (1) a crafted request to the nnmRptConfig.exe CGI program, which reveals the pathname of log directories; or (2) a crafted parameter in a request to the ovlaunch.exe CGI program, which reveals configuration details. NOTE: this issue
nvd
Hp Openview Network Node Manager vulnerabilities | cvebase