APP: HP OpenView Network Node Manager webappmon.exe Buffer Overflow

This signature detects attempts to exploit a known vulnerability against HP OpenView Network Node Manager (NNM). A successful attack can lead to arbitrary code execution.

Extended Description

HP OpenView Network Node Manager (NNM) is prone to multiple remote code-execution vulnerabilities because it fails to sanitize user-supplied data. An attacker can exploit these issues to execute arbitrary code with the privileges of the user running the affected application. Successful exploits will compromise the affected application and possibly the underlying computer. These issues affects NNM 7.51, v7.53 running on HP-UX, Linux, Solaris, and Windows; other versions and platforms may also be affected.

Affected Products

Hp openview_network_node_manager

References

BugTraq: 50471

CVE: CVE-2011-3166

Short Name
APP:HPOV:NNM-HTTP-REQUEST
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
Buffer CVE-2011-3166 HP Manager Network Node OpenView Overflow bid:50471 webappmon.exe
Release Date
01/08/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Hp

CVSS Score

10.0

Found a potential security threat?