HP.OpenView.Network.Node.Manager.Template.Format.String

description-logoDescription

This indicates an attack attempt against a format-string vulnerability in the HP OpenView Network Node Manager (NNM).
The vulnerability is due to an error when the vulnerable software processes HTTP requests containing a crafted template name. It could allow remote attackers to execute arbitrary code via format string specifiers in template name.

affected-products-logoAffected Products

HP OpenView Network Node Manager 7.53
HP OpenView Network Node Manager 7.51

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the patch, available from the vendor's web site:

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)