{"api_version":"1","generated_at":"2026-07-23T09:36:48+00:00","cve":"CVE-2008-0067","urls":{"html":"https://cve.report/CVE-2008-0067","api":"https://cve.report/api/cve/CVE-2008-0067.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2008-0067","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2008-0067"},"summary":{"title":"CVE-2008-0067","description":"Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via (1) long string parameters to the OpenView5.exe CGI program; (2) a long string parameter to the OpenView5.exe CGI program, related to ov.dll; or a long string parameter to the (3) getcvdata.exe, (4) ovlaunch.exe, or (5) Toolbar.exe CGI program.","state":"PUBLISHED","assigner":"flexera","published_at":"2009-01-08 19:30:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-119","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.securityfocus.com/bid/33147","name":"http://www.securityfocus.com/bid/33147","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP OpenView Network Node Manager HTTP Request Multiple Buffer Overflow Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/secunia_research/2008-13/","name":"http://secunia.com/secunia_research/2008-13/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Vulnerabilities - Secunia Research - Vulnerability Intelligence - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securityreason.com/securityalert/8307","name":"http://securityreason.com/securityalert/8307","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP OpenView Network Node Manager Toolbar.exe CGI Buffer Overflow  - CXSecurity.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/28074","name":"http://secunia.com/advisories/28074","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"HP OpenView Network Node Manager Multiple Vulnerabilities - Secunia Advisories - Vulnerability Intelligence - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/499826/100/0/threaded","name":"http://www.securityfocus.com/archive/1/499826/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://securitytracker.com/id?1021521","name":"http://securitytracker.com/id?1021521","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - HP OpenView Network Node Manager Buffer Overflows Let Remote Users Execute Arbitrary Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securityreason.com/securityalert/4885","name":"http://securityreason.com/securityalert/4885","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP OpenView Network Node Manager Multiple Vulnerabilities - CXSecurity.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=123247393715913&w=2","name":"http://marc.info/?l=bugtraq&m=123247393715913&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2008-0067","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2008-0067","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2008","cve_id":"67","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.51","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T07:32:23.897Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://secunia.com/secunia_research/2008-13/"},{"name":"HPSBMA02400","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=123247393715913&w=2"},{"name":"1021521","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1021521"},{"name":"33147","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/33147"},{"name":"4885","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/4885"},{"name":"20090107 Secunia Research: HP OpenView Network Node Manager Multiple Vulnerabilities","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/499826/100/0/threaded"},{"name":"SSRT080144","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=123247393715913&w=2"},{"name":"8307","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/8307"},{"name":"28074","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/28074"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2009-01-07T00:00:00.000Z","descriptions":[{"lang":"en","value":"Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via (1) long string parameters to the OpenView5.exe CGI program; (2) a long string parameter to the OpenView5.exe CGI program, related to ov.dll; or a long string parameter to the (3) getcvdata.exe, (4) ovlaunch.exe, or (5) Toolbar.exe CGI program."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-15T20:57:01.000Z","orgId":"44d08088-2bea-4760-83a6-1e9be26b15ab","shortName":"flexera"},"references":[{"tags":["x_refsource_MISC"],"url":"http://secunia.com/secunia_research/2008-13/"},{"name":"HPSBMA02400","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=123247393715913&w=2"},{"name":"1021521","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1021521"},{"name":"33147","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/33147"},{"name":"4885","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/4885"},{"name":"20090107 Secunia Research: HP OpenView Network Node Manager Multiple Vulnerabilities","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/499826/100/0/threaded"},{"name":"SSRT080144","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=123247393715913&w=2"},{"name":"8307","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/8307"},{"name":"28074","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/28074"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"PSIRT-CNA@flexerasoftware.com","ID":"CVE-2008-0067","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via (1) long string parameters to the OpenView5.exe CGI program; (2) a long string parameter to the OpenView5.exe CGI program, related to ov.dll; or a long string parameter to the (3) getcvdata.exe, (4) ovlaunch.exe, or (5) Toolbar.exe CGI program."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://secunia.com/secunia_research/2008-13/","refsource":"MISC","url":"http://secunia.com/secunia_research/2008-13/"},{"name":"HPSBMA02400","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=123247393715913&w=2"},{"name":"1021521","refsource":"SECTRACK","url":"http://securitytracker.com/id?1021521"},{"name":"33147","refsource":"BID","url":"http://www.securityfocus.com/bid/33147"},{"name":"4885","refsource":"SREASON","url":"http://securityreason.com/securityalert/4885"},{"name":"20090107 Secunia Research: HP OpenView Network Node Manager Multiple Vulnerabilities","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/499826/100/0/threaded"},{"name":"SSRT080144","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=123247393715913&w=2"},{"name":"8307","refsource":"SREASON","url":"http://securityreason.com/securityalert/8307"},{"name":"28074","refsource":"SECUNIA","url":"http://secunia.com/advisories/28074"}]}}}},"cveMetadata":{"assignerOrgId":"44d08088-2bea-4760-83a6-1e9be26b15ab","assignerShortName":"flexera","cveId":"CVE-2008-0067","datePublished":"2009-01-08T19:00:00.000Z","dateReserved":"2008-01-03T00:00:00.000Z","dateUpdated":"2024-08-07T07:32:23.897Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2009-01-08 19:30:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-119","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.51:*:*:*:*:*:*:*","matchCriteriaId":"F5CC1E39-5607-41A9-8BBE-A51F1AC9D5CB"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2008","CveId":"67","Ordinal":"1","Title":"CVE-2008-0067","CVE":"CVE-2008-0067","Year":"2008"},"notes":[{"CveYear":"2008","CveId":"67","Ordinal":"1","NoteData":"Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via (1) long string parameters to the OpenView5.exe CGI program; (2) a long string parameter to the OpenView5.exe CGI program, related to ov.dll; or a long string parameter to the (3) getcvdata.exe, (4) ovlaunch.exe, or (5) Toolbar.exe CGI program.","Type":"Description","Title":"CVE-2008-0067"},{"CveYear":"2008","CveId":"67","Ordinal":"2","NoteData":"2009-01-08","Type":"Other","Title":"Published"},{"CveYear":"2008","CveId":"67","Ordinal":"3","NoteData":"2018-10-15","Type":"Other","Title":"Modified"}]}}}