|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Gain root remotely >> HP OpenView NNM multiple services Heap Overflow Vulnerability Assessment Details
|
HP OpenView NNM multiple services Heap Overflow |
||
Checks for HP OpenView NNM Heap Overflow Detailed Explanation for this Vulnerability Assessment Summary : Arbitrary code can be executed on the remote host due to a flaw in the HP OpenView Topology Manager Daemon. Description : The remote host is running HP OpenView Topology Manager Daemon for IP discovery and layout. The remote version of this software is vulnerable to a Heap Overflow vulnerability. An unauthenticated attacker can exploit this flaw by sending a specialy crafted packet to the remote host. A successful exploitation of this vulnerability would result in remote code execution with the rights of the daemon itself. Note that other OV NNM services are vulnerable this flaw as well. See also : http://www.securityfocus.com/advisories/8372 Solution : Install one of the patches listed in the advisory referenced above. Network Security Threat Level: Critical / CVSS Base Score : 10 (AV:R/AC:L/Au:NR/C:C/A:C/I:C/B:N) Networks Security ID: 13029 Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Tenable Network Security |
||
Cables, Connectors |
|
||
No Discussions have been posted on this vulnerability. |