Some vulnerabilities have been reported in HP OpenView Network Node Manager, which can be exploited by malicious people to disclose certain information or cause a DoS (Denial of Service).
1) An error in the ovtopmd.exe service can be exploited to cause the service to terminate via a type 0x36 request sent to default port 2532/TCP.
2) An input validation error in the ovalarmsrv.exe service can be exploited to cause the service to consume large amounts of CPU resources by sending specially crafted requests (e.g. type 25, 45, 46, 47 and 81) to default port 2954/TCP.
3) A NULL-pointer dereference error within ovalarmsrv.exe can be exploited via a specially crafted request sent to default port 2954/TCP.
4) It is possible to download or view arbitrary files by sending an HTTP request to the OpenView5.exe CGI application and passing strings containing directory traversal sequences to the "Action" parameter.
The vulnerabilities are reported in version 7.53. Other versions may also be affected.
Solution: A patch/archive file for the directory traversal issue (vulnerability #4) is available.
Do you have additional information related to this advisory?
Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this
information to firstname.lastname@example.org
Subject: HP OpenView Network Node Manager Multiple Vulnerabilities
No posts yet
You must be logged in to post a comment.
Secunia Customer Login
Not a customer already?
Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance.