CVE-2010-1961
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 69%
from disclosure to weapon286 days
Published on NVDJun 10
1st PoC+286d
metasploit+6d
exploitation probability
69%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Buffer overflow in ovutil.dll in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unspecified variables to jovgraph.exe, which are not properly handled in a call to the sprintf function.
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/17044unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://marc.info/?l=bugtraq&m=127602909915281&w=2http://secunia.com/advisories/40101https://exchange.xforce.ibmcloud.com/vulnerabilities/59250http://www.securityfocus.com/archive/1/511731/100/0/threadedhttp://www.securityfocus.com/bid/40638http://www.securitytracker.com/id?1024071http://www.zerodayinitiative.com/advisories/ZDI-10-106/