Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-4560

Опубликовано: 08 фев. 2009
Источник: nvd
CVSS2: 7.8
EPSS Низкий

Описание

HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to obtain sensitive information via (1) a crafted request to the nnmRptConfig.exe CGI program, which reveals the pathname of log directories; or (2) a crafted parameter in a request to the ovlaunch.exe CGI program, which reveals configuration details. NOTE: this issue may be partially covered by CVE-2009-0205.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:hp_ux:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:linux:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:solaris:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:windows:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.51:-:hp-ux:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.51:-:linux:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.51:-:solaris:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.51:-:windows:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.53:-:hp-ux:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.53:-:linux:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.53:-:solaris:*:*:*:*:*
cpe:2.3:a:hp:openview_network_node_manager:7.53:-:windows:*:*:*:*:*

EPSS

Процентиль: 62%
0.00426
Низкий

7.8 High

CVSS2

Дефекты

CWE-200

Связанные уязвимости

github
почти 4 года назад

HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to obtain sensitive information via (1) a crafted request to the nnmRptConfig.exe CGI program, which reveals the pathname of log directories; or (2) a crafted parameter in a request to the ovlaunch.exe CGI program, which reveals configuration details. NOTE: this issue may be partially covered by CVE-2009-0205.

EPSS

Процентиль: 62%
0.00426
Низкий

7.8 High

CVSS2

Дефекты

CWE-200