Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2008-1697

EPSS 83.18% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2008-1697

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows remote attackers to execute arbitrary code via a long URI in an HTTP request processed by ovas.exe, as demonstrated by a certain topology/homeBaseView request. NOTE: some of these details are obtained from third party information.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
HP OpenView网络节点管理器OVAS.EXE远程栈溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
HP OpenView网络节点管理器(OV NNM)是HP公司开发和维护的网络管理系统软件,具有强大的网络节点管理功能。 OV NNM的ovwparser.dll库存在栈溢出漏洞,如果向默认运行在7510/TCP端口上的ovas.exe服务发送了超长的topology/homeBaseView HTTP GET请求的话,就可以触发这个溢出,导致执行任意指令。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2008-1697

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2008-1697

登录查看更多情报信息。

Same Patch Batch · n/a · 2008-04-08 · 22 CVEs total

CVE-2008-0711HP iLO-2 Management Processors 拒绝服务漏洞
CVE-2008-1699CMS 'permalink.php' SQL注入漏洞
CVE-2008-1698Simple_gallery gallery.php 跨站脚本攻击漏洞
CVE-2008-1696DaZPHPNews 'makepost.php' 目录遍历漏洞
CVE-2008-0313Symantec Norton SymAData.ActiveDataInfo.1 ActiveX 控件代码执行漏洞
CVE-2008-0312Symantec AutoFix支持工具SYMADATA.DLL控件多个安全漏洞
CVE-2008-1702e107 My_Gallery 插件 'dload.php' 路径遍历漏洞
CVE-2008-1701Novell NetWare 拒绝服务漏洞
CVE-2008-1700WorkSite Web 拒绝服务漏洞
CVE-2008-1686FishSound库 远程Speex 解码代码执行漏洞
CVE-2008-1617Interwoven WorkSite Web TransferCtrl Class控件双重释放漏洞
CVE-2008-0083Microsoft VBScript和JScript脚本引擎远程溢出漏洞(MS08-022)
CVE-2008-1090Microsoft Visio Memory Validation 内存验证漏洞
CVE-2008-1089Microsoft Visio Object Header 未明漏洞
CVE-2008-1088Microsoft Project资源内存分配远程代码执行漏洞(MS08-018)
CVE-2008-1087Microsoft Windows GDI 'EMR_COLORMATCHTOTARGETW' 栈溢出漏洞
CVE-2008-1086Microsoft Internet Explorer 代码注入漏洞
CVE-2008-1085Microsoft Internet Explorer Data Stream Handling 远程代码执行漏洞
CVE-2008-1084Microsoft Windows内核用户态回调本地权限提升漏洞(MS08-025)
CVE-2008-1083Microsoft Windows GDI 'CreateDIBPatternBrushPt' Function 堆溢出漏洞

Showing top 20 of 22 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2008-1697

No comments yet


Leave a comment