Vulnerability Name: | CVE-2001-0552 (CCN-6683) | ||||||||
Assigned: | 2001-06-08 | ||||||||
Published: | 2001-06-08 | ||||||||
Updated: | 2016-10-18 | ||||||||
Summary: | ovactiond in HP OpenView Network Node Manager (NNM) 6.1 and Tivoli Netview 5.x and 6.x allows remote attackers to execute arbitrary commands via shell metacharacters in a certain SNMP trap message. | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Fri Jun 08 2001 - 01:12:07 CDT HP Openview NNM6.1 ovactiond bin exploit Source: CCN Type: BugTraq Mailing List, Mon Jun 11 2001 - 03:56:21 CDT Re: HP Openview NNM6.1 ovactiond bin exploit Source: MITRE Type: CNA CVE-2001-0552 Source: BUGTRAQ Type: UNKNOWN 20010608 HP Openview NNM6.1 ovactiond bin exploit Source: CCN Type: HP OpenView Web site hp openview software patches Source: CCN Type: Hewlett-Packard Company Security Bulletin HPSBUX0106-154 Sec. Vulnerability in OpenView Network Node Manager Source: CCN Type: CERT Advisory CA-2001-24 Vulnerability in OpenView and NetView Source: CERT Type: Patch, Third Party Advisory, US Government Resource CA-2001-24 Source: CCN Type: US-CERT VU#952171 Hewlett Packard OpenView and Tivoli NetView do not adequately validate SNMP trap arguments Source: CERT-VN Type: Patch, Third Party Advisory, US Government Resource VU#952171 Source: CCN Type: OSVDB ID: 11341 HP OpenView NNM/Tivoli NetView ovactiond Arbitrary Command Execution Source: BID Type: Exploit, Patch, Vendor Advisory 2845 Source: CCN Type: BID-2845 OVActionD SNMPNotify Command Execution Vulnerability Source: CCN Type: Tivoli Customer Support Web site Customer Support Source: XF Type: UNKNOWN openview-nnm-ovactiond-execution(6683) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |