CVE-2009-3849
HP OpenView Network Node Manager 7.01, 7.51, 7.53 - Remote Code Execution via Long Template or Oid Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2009-3849.
PoCs published by Metasploit, MC, including Metasploit module exploits/windows/http/hp_nnm_snmp.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in HP OpenView Network Node Manager 7.50 via a crafted CGI request to Snmp.exe, allowing arbitrary code execution.
Description
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via (1) a long Template parameter to nnmRptConfig.exe, related to the strcat function; or (2) a long Oid parameter to snmp.exe.
Exploits (2)
This Metasploit module exploits a stack buffer overflow in HP OpenView Network Node Manager 7.50 via a crafted CGI request to Snmp.exe, allowing arbitrary code execution.
This Metasploit module exploits a stack buffer overflow in HP OpenView Network Node Manager 7.50 via a crafted CGI request to Snmp.exe, allowing arbitrary code execution. The exploit uses a known return address (0x5a01d78d) to redirect execution to the payload.