CVE-2008-4562

HP OpenView Network Node Manager 7.01, 7.51, 7.53 - Remote Code Execution via ovlaunch CGI Host Parameter

Title source: llm
STIX 2.1

Description

Buffer overflow in the ovlaunch CGI program in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 on Windows allows remote attackers to execute arbitrary code via a crafted Host parameter. NOTE: this issue may be partially covered by CVE-2009-0205.

References (2)

Core 2
Core References
Third Party Advisory third-party-advisory x_refsource_idefense
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=772

Scores

EPSS 0.0557
EPSS Percentile 90.4%

Details

CWE
CWE-119
Status published
Products (3)
hp/openview_network_node_manager 7.0.1 (4 CPE variants)
hp/openview_network_node_manager 7.51 (4 CPE variants)
hp/openview_network_node_manager 7.53 (4 CPE variants)
Published Feb 08, 2009
Tracked Since Feb 18, 2026