CVE-2005-2773

HP OpenView Network Node Manager 6.2 through 7.50 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) node parameter to connectedNodes.ovpl, (2) cdpView.ovpl, (3) freeIPaddrs.ovpl, and (4) ecscmg.ovpl.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hp:openview_network_node_manager:*:*:*:*:*:*:*:*

History

07 Feb 2025, 15:15

Type Values Removed Values Added
CWE CWE-77

15 Jan 2025, 23:34

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=112499121725662&w=2 - Mailing List () http://marc.info/?l=bugtraq&m=112499121725662&w=2 - Exploit, Issue Tracking, Mailing List
References () http://secunia.com/advisories/16555/ - Broken Link () http://secunia.com/advisories/16555/ - Not Applicable
References () http://www.securityfocus.com/advisories/9150 - Broken Link, Third Party Advisory, VDB Entry () http://www.securityfocus.com/advisories/9150 - Broken Link
References () http://www.securityfocus.com/bid/14662 - Broken Link, Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/14662 - Broken Link
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/21999 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/21999 - Third Party Advisory

Information

Published : 2005-09-02 23:03

Updated : 2025-04-03 01:03


NVD link : CVE-2005-2773

Mitre link : CVE-2005-2773

CVE.ORG link : CVE-2005-2773


JSON object : View

Products Affected

hp

  • openview_network_node_manager
CWE
NVD-CWE-noinfo CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')