CVE-2007-2280
high · 10Stack-based buffer overflow in OmniInet.exe (aka the backup client service daemon) in the Application Recovery Manager component in HP OpenView Storage Data Protector 5.50 and 6.0 allows remote attackers to execute arbitrary code via an MSG_PROTOCOL command with long arguments, a different vulnerability than CVE-2009-3844.
10
CVSS
60.3%
EPSS (exploit prob.)
99th
EPSS percentile
2009-12-18
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| hp | openview_storage_data_protector | 5.50 |
| hp | openview_storage_data_protector | 6.0 |
Check a specific version with /api/v1/cve/match.
References
- http://marc.info/?l=bugtraq&m=126106261622540&w=2
- http://securitytracker.com/id?1023361
- http://www.securityfocus.com/bid/37396
- http://www.vupen.com/english/advisories/2009/3594
- http://www.zerodayinitiative.com/advisories/ZDI-09-099/
- http://marc.info/?l=bugtraq&m=126106261622540&w=2
- http://securitytracker.com/id?1023361
- http://www.securityfocus.com/bid/37396
- http://www.vupen.com/english/advisories/2009/3594
- http://www.zerodayinitiative.com/advisories/ZDI-09-099/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2007-2280