Executive Summary

Summary
Title HP OpenView Performance Agent and HP Performance Agent Running on Windows, Remote Execution of Arbitrary Code
Informations
Name HPSBMA02396 SSRT080175 First vendor Publication 2009-04-08
Vendor HP Last vendor Modification 2009-04-08
Severity (Vendor) N/A Revision 1

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:M/Au:N/C:C/I:C/A:C)
Cvss Base Score 9.3 Attack Range Network
Cvss Impact Score 10 Attack Complexity Medium
Cvss Expoit Score 8.6 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

A potential security vulnerability has been identified with HP OpenView Performance Agent and HP Performance Agent. The vulnerability could be exploited remotely to execute arbitrary code.

Original Source

Url : http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01622011

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 3

Open Source Vulnerability Database (OSVDB)

Id Description
53478 HP OpenView Performance Agent DynaZip Library Unspecified Arbitrary Remote Co...

Nessus® Vulnerability Scanner

Date Description
2006-09-07 Name : The remote Windows host contains a library that is affected by several buffer...
File : dynazip_5008.nasl - Type : ACT_GATHER_INFO