{"api_version":"1","generated_at":"2026-07-23T09:35:40+00:00","cve":"CVE-2007-6204","urls":{"html":"https://cve.report/CVE-2007-6204","api":"https://cve.report/api/cve/CVE-2007-6204.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-6204","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-6204"},"summary":{"title":"CVE-2007-6204","description":"Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to OpenView5.exe.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-12-13 21:46:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-119","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01188923","name":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01188923","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HPSBMA02281 SSRT061261 rev.1 - HP OpenView Network Node Manager (OV NNM) Remote Unauthorized Execution of Arbitrary Code - c01188923 - \r\n\t\tHP Business Support Center","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"https://www.exploit-db.com/exploits/4724","name":"https://www.exploit-db.com/exploits/4724","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP OpenView Network Node Manager 07.50 - CGI Remote Buffer Overflow - Windows remote Exploit","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/26741","name":"http://www.securityfocus.com/bid/26741","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"],"title":"HP OpenView Network Node Manager CGI Buffer Overflow Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.securityfocus.com/archive/1/484704/100/0/threaded","name":"http://www.securityfocus.com/archive/1/484704/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.zerodayinitiative.com/advisories/ZDI-07-071.html","name":"http://www.zerodayinitiative.com/advisories/ZDI-07-071.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"ZDI-07-071","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/38892","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/38892","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/27964","name":"http://secunia.com/advisories/27964","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"HP OpenView Network Node Manager Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/4111","name":"http://www.vupen.com/english/advisories/2007/4111","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securityreason.com/securityalert/3441","name":"http://securityreason.com/securityalert/3441","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityReason - HP OpenView Network Node Manager Multiple CGI Buffer Overflows","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1019055","name":"http://www.securitytracker.com/id?1019055","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP OpenView Network Node Manager Buffer Overflows Let Remote Users Execute Arbitrary Code - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-6204","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-6204","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"6204","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"6.41","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6204","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6204","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.51","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T15:54:27.073Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"26741","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/26741"},{"name":"ADV-2007-4111","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/4111"},{"name":"27964","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/27964"},{"name":"HPSBMA02281","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01188923"},{"name":"4724","tags":["exploit","x_refsource_EXPLOIT-DB","x_transferred"],"url":"https://www.exploit-db.com/exploits/4724"},{"name":"3441","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/3441"},{"name":"SSRT061261","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01188923"},{"name":"1019055","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1019055"},{"name":"hpopenview-nnm-unspecified-code-execution(38892)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/38892"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.zerodayinitiative.com/advisories/ZDI-07-071.html"},{"name":"20071206 ZDI-07-071: HP OpenView Network Node Manager Multiple CGI Buffer Overflows","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/484704/100/0/threaded"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-12-05T00:00:00.000Z","descriptions":[{"lang":"en","value":"Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to OpenView5.exe."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-15T20:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"26741","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/26741"},{"name":"ADV-2007-4111","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/4111"},{"name":"27964","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/27964"},{"name":"HPSBMA02281","tags":["vendor-advisory","x_refsource_HP"],"url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01188923"},{"name":"4724","tags":["exploit","x_refsource_EXPLOIT-DB"],"url":"https://www.exploit-db.com/exploits/4724"},{"name":"3441","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/3441"},{"name":"SSRT061261","tags":["vendor-advisory","x_refsource_HP"],"url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01188923"},{"name":"1019055","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1019055"},{"name":"hpopenview-nnm-unspecified-code-execution(38892)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/38892"},{"tags":["x_refsource_MISC"],"url":"http://www.zerodayinitiative.com/advisories/ZDI-07-071.html"},{"name":"20071206 ZDI-07-071: HP OpenView Network Node Manager Multiple CGI Buffer Overflows","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/484704/100/0/threaded"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-6204","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to OpenView5.exe."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"26741","refsource":"BID","url":"http://www.securityfocus.com/bid/26741"},{"name":"ADV-2007-4111","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/4111"},{"name":"27964","refsource":"SECUNIA","url":"http://secunia.com/advisories/27964"},{"name":"HPSBMA02281","refsource":"HP","url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01188923"},{"name":"4724","refsource":"EXPLOIT-DB","url":"https://www.exploit-db.com/exploits/4724"},{"name":"3441","refsource":"SREASON","url":"http://securityreason.com/securityalert/3441"},{"name":"SSRT061261","refsource":"HP","url":"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01188923"},{"name":"1019055","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1019055"},{"name":"hpopenview-nnm-unspecified-code-execution(38892)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/38892"},{"name":"http://www.zerodayinitiative.com/advisories/ZDI-07-071.html","refsource":"MISC","url":"http://www.zerodayinitiative.com/advisories/ZDI-07-071.html"},{"name":"20071206 ZDI-07-071: HP OpenView Network Node Manager Multiple CGI Buffer Overflows","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/484704/100/0/threaded"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-6204","datePublished":"2007-12-13T21:00:00.000Z","dateReserved":"2007-12-03T00:00:00.000Z","dateUpdated":"2024-08-07T15:54:27.073Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-12-13 21:46:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-119","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:6.41:*:*:*:*:*:*:*","matchCriteriaId":"D24CCB02-FFFE-448B-AF31-D9AC39443552"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"6C89F2AB-45CF-4455-920F-396852C862E0"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.51:*:*:*:*:*:*:*","matchCriteriaId":"F5CC1E39-5607-41A9-8BBE-A51F1AC9D5CB"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"6204","Ordinal":"1","Title":"CVE-2007-6204","CVE":"CVE-2007-6204","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"6204","Ordinal":"1","NoteData":"Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to OpenView5.exe.","Type":"Description","Title":"CVE-2007-6204"},{"CveYear":"2007","CveId":"6204","Ordinal":"2","NoteData":"2007-12-13","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"6204","Ordinal":"3","NoteData":"2018-10-15","Type":"Other","Title":"Modified"}]}}}