CVE-2008-1697
HP OpenView Network Node Manager <7.53-7.51 - Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2008-1697.
PoCs published by Metasploit, muts, bannedit, muts, including Metasploit module exploits/windows/http/hp_nnm_ovas.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in HP OpenView Network Node Manager (CVE-2008-1697) via a malformed HTTP request. It uses an alphanumeric egghunter to bypass character restrictions and achieve remote code execution.
Description
Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows remote attackers to execute arbitrary code via a long URI in an HTTP request processed by ovas.exe, as demonstrated by a certain topology/homeBaseView request. NOTE: some of these details are obtained from third party information.
Exploits (3)
This Metasploit module exploits a stack buffer overflow in HP OpenView Network Node Manager (CVE-2008-1697) via a malformed HTTP request. It uses an alphanumeric egghunter to bypass character restrictions and achieve remote code execution.
This exploit targets a pre-authentication SEH overflow in HP OpenView NNM 7.5.1's OVAS.exe via a malformed HTTP request. It uses an egghunter and alphanumeric shellcode to spawn a bind shell on port 4444.
This Metasploit module exploits a stack buffer overflow in HP OpenView NNM 7.53 and earlier via a malformed HTTP request, using an alphanumeric-encoded egghunter to bypass character restrictions and achieve remote code execution.