CVE-2009-3846 Information

Description

Multiple heap-based buffer overflows in ovlogin.exe in HP OpenView Network Node Manager (OV NNM) 7.01 7.51 and 7.53 allow remote attackers to execute arbitrary code via a long (1) userid or (2) passwd parameter.

Reference

http://dvlabs.tippingpoint.com/advisory/TPTI-09-08 http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01950877 http://marc.info/?l=bugtraq&m=126046355120442&w=2 http://www.securityfocus.com/archive/1/508350/100/0/threaded http://www.securityfocus.com/bid/37261 http://www.securityfocus.com/bid/37295 https://exchange.xforce.ibmcloud.com/vulnerabilities/54658

Share on: