CVE-2010-4113
HP Power Manager < 4.3.2 - Remote Code Execution via Long Login Variable
Title source: llmDescription
Stack-based buffer overflow in HP Power Manager (HPPM) before 4.3.2 allows remote attackers to execute arbitrary code via a long Login variable to the management web server.
References (4)
Core 4
Core References
Vendor Advisory vendor-advisory
x_refsource_hp
http://marc.info/?l=bugtraq&m=129251322532373&w=2
Third Party Advisory x_refsource_misc
http://www.zerodayinitiative.com/advisories/ZDI-10-292/
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/42644
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1024902
Scores
EPSS
0.0683
EPSS Percentile
91.5%
Details
CWE
CWE-119
Status
published
Products (5)
hp/power_manager
4.2.5
hp/power_manager
4.2.6
hp/power_manager
4.2.7
hp/power_manager
4.2.8
hp/power_manager
< 4.2.9
Published
Dec 22, 2010
Tracked Since
Feb 18, 2026