CVE-2005-2773

Description

HP OpenView Network Node Manager 6.2 through 7.50 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) node parameter to connectedNodes.ovpl, (2) cdpView.ovpl, (3) freeIPaddrs.ovpl, and (4) ecscmg.ovpl.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
91.208

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities affected in openview_network_node_manager 6.2NCM
Multiple Vulnerabilities affected in openview_network_node_manager 6.41NCM
Vulnerabilities CVE-2003-1493 ,CVE-2005-2773 ,CVE-2008-1697 ,CVE-2008-1842 are affected in openview_network_node_manager 6.31NCM
Vulnerabilities CVE-2003-1493 ,CVE-2005-2773 ,CVE-2008-1697 ,CVE-2008-1842 are affected in openview_network_node_manager 6.10NCM
Vulnerabilities CVE-2003-1493 ,CVE-2005-2773 ,CVE-2007-0206 are affected in openview_network_node_manager 6.4-solarisNCM
Vulnerabilities CVE-2003-1493 ,CVE-2005-2773 ,CVE-2007-0206 are affected in openview_network_node_manager 6.4-nt_4.x_windows_2000NCM
Multiple Vulnerabilities affected in openview_network_node_manager 6.4NCM
Vulnerabilities CVE-2003-1493 ,CVE-2005-2773 ,CVE-2007-0206 are affected in openview_network_node_manager 6.2-solarisNCM
Vulnerabilities CVE-2003-1493 ,CVE-2005-2773 ,CVE-2007-0206 are affected in openview_network_node_manager 6.2-nt_4.x_windows_2000NCM
Multiple Vulnerabilities affected in openview_network_node_manager 7.50NCM
Vulnerabilities CVE-2005-2773 ,CVE-2007-0206 are affected in openview_network_node_manager 7.50-windows_2000_xpNCM
Vulnerabilities CVE-2005-2773 ,CVE-2007-0206 are affected in openview_network_node_manager 7.50-solarisNCM
Vulnerabilities CVE-2005-2773 ,CVE-2007-0206 are affected in openview_network_node_manager 7.0.1-windows_2000_xpNCM
Vulnerabilities CVE-2005-2773 ,CVE-2007-0206 are affected in openview_network_node_manager 6.41-solarisNCM
Vulnerabilities CVE-2005-2773 are affected in openview_network_node_manager 6.31-nt_4.x_windows_2000NCM
CVE-2005-2773NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234