Exploitation Summary
EIP tracks 3 public exploits for CVE-2007-6204.
PoCs published by Metasploit, muts, MC, including Metasploit module exploits/windows/http/hp_nnm_openview5.
AI-analyzed exploit summary This exploit targets a stack buffer overflow in HP OpenView Network Node Manager 7.50 via a crafted CGI request to OpenView5.exe. It leverages a long 'Action' parameter to overwrite the return address and execute arbitrary payloads.
Description
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to OpenView5.exe.
Exploits (3)
This exploit targets a stack buffer overflow in HP OpenView Network Node Manager 7.50 via a crafted CGI request to OpenView5.exe. It leverages a long 'Action' parameter to overwrite the return address and execute arbitrary payloads.
This exploit targets a stack-based buffer overflow in HP OpenView Network Node Manager's OpenView5.exe CGI component. It sends a crafted HTTP GET request with a long string of 'A's followed by a JMP ESP address and Alpha2-encoded shellcode to achieve remote code execution.
This Metasploit module exploits a stack buffer overflow in HP OpenView Network Node Manager 7.50 via a crafted CGI request to OpenView5.exe. It leverages a known return address in ov.dll to execute arbitrary payloads.