CVE-2011-0270

HP OpenView Network Node Manager 7.51 and 7.53 - Remote Code Execution via Format String in nnmRptConfig.exe

Title source: llm
STIX 2.1

Description

Format string vulnerability in nnmRptConfig.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via format string specifiers in input data that involves an invalid template name.

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vendor-advisory x_refsource_hp
http://www.securityfocus.com/archive/1/515628
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2011/0085
Third Party Advisory x_refsource_misc
http://www.zerodayinitiative.com/advisories/ZDI-11-012/
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/45762
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1024951
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/70474
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/64646

Scores

EPSS 0.1631
EPSS Percentile 96.5%

Details

CWE
CWE-134
Status published
Products (2)
hp/openview_network_node_manager 7.51
hp/openview_network_node_manager 7.53
Published Jan 13, 2011
Tracked Since Feb 18, 2026