HP OpenView Network Node Manager 6.2 through 7.50 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) node parameter to connectedNodes.ovpl, (2) cdpView.ovpl, (3) freeIPaddrs.ovpl, and (4) ecscmg.ovpl.
References
| Link | Resource |
|---|---|
| http://marc.info/?l=bugtraq&m=112499121725662&w=2 | Exploit Issue Tracking Mailing List |
| http://secunia.com/advisories/16555/ | Not Applicable |
| http://www.securityfocus.com/advisories/9150 | Broken Link |
| http://www.securityfocus.com/bid/14662 | Broken Link |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/21999 | Third Party Advisory |
| http://marc.info/?l=bugtraq&m=112499121725662&w=2 | Exploit Issue Tracking Mailing List |
| http://secunia.com/advisories/16555/ | Not Applicable |
| http://www.securityfocus.com/advisories/9150 | Broken Link |
| http://www.securityfocus.com/bid/14662 | Broken Link |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/21999 | Third Party Advisory |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2005-2773 |
Configurations
History
No history.
Information
Published : 2005-09-02 23:03
Updated : 2025-10-22 01:15
NVD link : CVE-2005-2773
Mitre link : CVE-2005-2773
CVE.ORG link : CVE-2005-2773
JSON object : View
Products Affected
hp
- openview_network_node_manager
CWE
NVD-CWE-noinfo
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
