HP OpenView Network Node Manager 6.2 through 7.50 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) node parameter to connectedNodes.ovpl, (2) cdpView.ovpl, (3) freeIPaddrs.ovpl, and (4) ecscmg.ovpl.
References
Configurations
History
07 Feb 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-77 |
15 Jan 2025, 23:34
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=112499121725662&w=2 - Exploit, Issue Tracking, Mailing List | |
References | () http://secunia.com/advisories/16555/ - Not Applicable | |
References | () http://www.securityfocus.com/advisories/9150 - Broken Link | |
References | () http://www.securityfocus.com/bid/14662 - Broken Link | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/21999 - Third Party Advisory |
Information
Published : 2005-09-02 23:03
Updated : 2025-04-03 01:03
NVD link : CVE-2005-2773
Mitre link : CVE-2005-2773
CVE.ORG link : CVE-2005-2773
JSON object : View
Products Affected
hp
- openview_network_node_manager
CWE
NVD-CWE-noinfo
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')