{"api_version":"1","generated_at":"2026-07-23T13:40:03+00:00","cve":"CVE-2009-1420","urls":{"html":"https://cve.report/CVE-2009-1420","api":"https://cve.report/api/cve/CVE-2009-1420.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2009-1420","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2009-1420"},"summary":{"title":"CVE-2009-1420","description":"Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when used with SNMP (aka HPOvNNM.HPOVSNMP) before 1.30.009 and MIB (aka HPOvNNM.HPOVMIB) before 1.30.009, allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.","state":"PUBLISHED","assigner":"mitre","published_at":"2009-06-11 15:30:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-noinfo","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=810","name":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=810","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Public Advisory: 06.26.09 // iDefense Labs","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://securitytracker.com/id?1022360","name":"http://securitytracker.com/id?1022360","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"SecurityTracker.com Archives - HP OpenView Network Node Manager SNMP/MIB Bug Lets Remote Users Execute Arbitrary Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/35408","name":"http://secunia.com/advisories/35408","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"HP OpenView Network Node Manager \"rping\" Buffer Overflow Vulnerability - Secunia Advisories - Vulnerability Information - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/35267","name":"http://www.securityfocus.com/bid/35267","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"HP OpenView Network Node Manager 'rping' Stack Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.vupen.com/english/advisories/2009/1549","name":"http://www.vupen.com/english/advisories/2009/1549","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=124457320614552&w=2","name":"http://marc.info/?l=bugtraq&m=124457320614552&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2009-1420","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2009-1420","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2009","cve_id":"1420","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpovnnm.hpovmib","cpe6":"1.30.000","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpovnnm.hpovsnmp","cpe6":"1.30.000","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.51","cpe7":"-","cpe8":"hp-ux","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.51","cpe7":"-","cpe8":"linux","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.51","cpe7":"-","cpe8":"solaris","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.51","cpe7":"-","cpe8":"windows","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.53","cpe7":"-","cpe8":"hp-ux","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.53","cpe7":"-","cpe8":"linux","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.53","cpe7":"-","cpe8":"solaris","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2009","cve_id":"1420","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"openview_network_node_manager","cpe6":"7.53","cpe7":"-","cpe8":"windows","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T05:13:25.382Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"HPSBMA02430","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=124457320614552&w=2"},{"name":"35267","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/35267"},{"name":"20090626 HP Network Node Manager rping Stack Buffer Overflow Vulnerability","tags":["third-party-advisory","x_refsource_IDEFENSE","x_transferred"],"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=810"},{"name":"1022360","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1022360"},{"name":"35408","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/35408"},{"name":"ADV-2009-1549","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2009/1549"},{"name":"SSRT080094","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=124457320614552&w=2"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2009-06-09T00:00:00.000Z","descriptions":[{"lang":"en","value":"Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when used with SNMP (aka HPOvNNM.HPOVSNMP) before 1.30.009 and MIB (aka HPOvNNM.HPOVMIB) before 1.30.009, allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2009-07-11T09:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"HPSBMA02430","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=124457320614552&w=2"},{"name":"35267","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/35267"},{"name":"20090626 HP Network Node Manager rping Stack Buffer Overflow Vulnerability","tags":["third-party-advisory","x_refsource_IDEFENSE"],"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=810"},{"name":"1022360","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1022360"},{"name":"35408","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/35408"},{"name":"ADV-2009-1549","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2009/1549"},{"name":"SSRT080094","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=124457320614552&w=2"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2009-1420","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when used with SNMP (aka HPOvNNM.HPOVSNMP) before 1.30.009 and MIB (aka HPOvNNM.HPOVMIB) before 1.30.009, allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"HPSBMA02430","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=124457320614552&w=2"},{"name":"35267","refsource":"BID","url":"http://www.securityfocus.com/bid/35267"},{"name":"20090626 HP Network Node Manager rping Stack Buffer Overflow Vulnerability","refsource":"IDEFENSE","url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=810"},{"name":"1022360","refsource":"SECTRACK","url":"http://securitytracker.com/id?1022360"},{"name":"35408","refsource":"SECUNIA","url":"http://secunia.com/advisories/35408"},{"name":"ADV-2009-1549","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2009/1549"},{"name":"SSRT080094","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=124457320614552&w=2"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2009-1420","datePublished":"2009-06-11T15:00:00.000Z","dateReserved":"2009-04-24T00:00:00.000Z","dateUpdated":"2024-08-07T05:13:25.382Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2009-06-11 15:30:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-noinfo","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.51:-:hp-ux:*:*:*:*:*","matchCriteriaId":"6692E05F-4864-449F-8A52-9001028D8C44"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.51:-:linux:*:*:*:*:*","matchCriteriaId":"2A40F2C6-AFF9-4D63-ACD0-A9D37160BA3D"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.51:-:solaris:*:*:*:*:*","matchCriteriaId":"FC1DA299-A180-4078-9172-67D116840D29"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.51:-:windows:*:*:*:*:*","matchCriteriaId":"FED610E9-7639-48FE-8B4F-B394A7EEC7C9"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.53:-:hp-ux:*:*:*:*:*","matchCriteriaId":"C1935DA4-A1AF-4867-BCB1-F5BB75360702"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.53:-:linux:*:*:*:*:*","matchCriteriaId":"769ED1A5-C3C5-404E-8040-655D69C2AA88"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.53:-:solaris:*:*:*:*:*","matchCriteriaId":"186EFE05-AC1C-48FF-91B7-0CCD49FEABCC"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:7.53:-:windows:*:*:*:*:*","matchCriteriaId":"D5CE1F56-FA80-416D-8F42-C1C291F0965C"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:a:hp:hpovnnm.hpovmib:1.30.000:*:*:*:*:*:*:*","matchCriteriaId":"F0D6A709-8FA3-4DAD-8CDE-5D09E7020B07"},{"vulnerable":false,"criteria":"cpe:2.3:a:hp:hpovnnm.hpovsnmp:1.30.000:*:*:*:*:*:*:*","matchCriteriaId":"B3AD984B-D366-4F16-A1C4-0E8018460EE5"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2009","CveId":"1420","Ordinal":"1","Title":"CVE-2009-1420","CVE":"CVE-2009-1420","Year":"2009"},"notes":[{"CveYear":"2009","CveId":"1420","Ordinal":"1","NoteData":"Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when used with SNMP (aka HPOvNNM.HPOVSNMP) before 1.30.009 and MIB (aka HPOvNNM.HPOVMIB) before 1.30.009, allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.","Type":"Description","Title":"CVE-2009-1420"},{"CveYear":"2009","CveId":"1420","Ordinal":"2","NoteData":"2009-06-11","Type":"Other","Title":"Published"},{"CveYear":"2009","CveId":"1420","Ordinal":"3","NoteData":"2009-07-11","Type":"Other","Title":"Modified"}]}}}