Vulnerability Details CVE-2008-1697
Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows remote attackers to execute arbitrary code via a long URI in an HTTP request processed by ovas.exe, as demonstrated by a certain topology/homeBaseView request. NOTE: some of these details are obtained from third party information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.835
EPSS Ranking 99.2%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2008-1697
-
cpe:2.3:a:hp:openview_network_node_manager:-
-
cpe:2.3:a:hp:openview_network_node_manager:4.11
-
cpe:2.3:a:hp:openview_network_node_manager:5.0.1
-
cpe:2.3:a:hp:openview_network_node_manager:5.01
-
cpe:2.3:a:hp:openview_network_node_manager:6.0.1
-
cpe:2.3:a:hp:openview_network_node_manager:6.1
-
cpe:2.3:a:hp:openview_network_node_manager:6.10
-
cpe:2.3:a:hp:openview_network_node_manager:6.2
-
cpe:2.3:a:hp:openview_network_node_manager:6.20
-
cpe:2.3:a:hp:openview_network_node_manager:6.31
-
cpe:2.3:a:hp:openview_network_node_manager:6.4
-
cpe:2.3:a:hp:openview_network_node_manager:6.41
-
cpe:2.3:a:hp:openview_network_node_manager:7.0.1
-
cpe:2.3:a:hp:openview_network_node_manager:7.01
-
cpe:2.3:a:hp:openview_network_node_manager:7.50
-
cpe:2.3:a:hp:openview_network_node_manager:7.51
-
cpe:2.3:a:hp:openview_network_node_manager:7.53