Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows remote attackers to execute arbitrary code via a long URI in an HTTP request processed by ovas.exe, as demonstrated by a certain topology/homeBaseView request. NOTE: some of these details are obtained from third party information.
| Software | From | Fixed in |
|---|---|---|
| hp / openview_network_node_manager | 7.51 | 7.51.x |
| hp / openview_network_node_manager | 7.0.1 | 7.0.1.x |
| hp / openview_network_node_manager | - | 7.53.x |