HP OpenView NNM ovwebsnmpsrv.exe Command Line Argument Buffer Overflow

  Severity: HIGH
  CVE Identifier: CVE-2010-1964
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unspecified parameters to jovgraph.exe, aka ZDI-CAN-683.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1004280
  Trend Micro Deep Security DPI Rule Name: 1004280 - HP OpenView NNM ovwebsnmpsrv.exe Command Line Argument Buffer Overflow

  AFFECTED SOFTWARE AND VERSION

  • hp openview_network_node_manager 7.51
  • hp openview_network_node_manager 7.53