CVE-2011-1867

HP Intelligent Management Center <5.0 - RCE

Title source: llm
STIX 2.1

Description

Stack-based buffer overflow in iNodeMngChecker.exe in the User Access Manager (UAM) 5.0 before SP1 E0101P03 and Endpoint Admission Defense (EAD) 5.0 before SP1 E0101P03 components in HP Intelligent Management Center (aka iNode Management Center) allows remote attackers to execute arbitrary code via a 0x0A0BF007 packet.

References (9)

Core 9
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/73597
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/68348
Third Party Advisory x_refsource_misc
http://www.zerodayinitiative.com/advisories/ZDI-11-232/
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/48527
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1025740
Vendor Advisory vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=130982758604404&w=2
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/45129
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/8302
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/518691/100/0/threaded

Scores

EPSS 0.4584
EPSS Percentile 97.7%

Details

CWE
CWE-119
Status published
Products (3)
hp/endpoint_admission_defense 5.0 (2 CPE variants)
hp/intelligent_management_center
hp/user_access_manager 5.0 (2 CPE variants)
Published Jul 11, 2011
Tracked Since Feb 18, 2026