HP Power Manager Management Web Server Login Remote Code Execution Vulnerability
BID:36933
Info
HP Power Manager Management Web Server Login Remote Code Execution Vulnerability
| Bugtraq ID: | 36933 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2009-2685 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 04 2009 12:00AM |
| Updated: | Jan 20 2010 04:23PM |
| Credit: | Janek Vind |
| Vulnerable: |
HP Power Manager 4.2.9 HP Power Manager 4.2.7 HP Power Manager 4.0Build11 HP Power Manager 4.0Build10 HP Power Manager 0 |
| Not Vulnerable: |
HP Power Manager 4.2.10 |
Discussion
HP Power Manager Management Web Server Login Remote Code Execution Vulnerability
HP Power Manager is prone to a remote code-execution vulnerability because it fails to properly bounds-check user-supplied data.
An attacker can exploit this issue to execute arbitrary code with SYSTEM credentials, resulting in a complete compromise of the affected computer. Failed exploit attempts will result in a denial-of-service condition.
HP Power Manager is prone to a remote code-execution vulnerability because it fails to properly bounds-check user-supplied data.
An attacker can exploit this issue to execute arbitrary code with SYSTEM credentials, resulting in a complete compromise of the affected computer. Failed exploit attempts will result in a denial-of-service condition.
Exploit / POC
HP Power Manager Management Web Server Login Remote Code Execution Vulnerability
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploit code is available:
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploit code is available:
Solution / Fix
HP Power Manager Management Web Server Login Remote Code Execution Vulnerability
Solution:
The vendor has released updates and an advisory. Please see the references for details.
Solution:
The vendor has released updates and an advisory. Please see the references for details.
References
HP Power Manager Management Web Server Login Remote Code Execution Vulnerability
References:
References:
- HP Power Manager Homepage (HP)
- [security bulletin] HPSBMA02474 SSRT090107 rev.1 - HP Power Manager, Remote Exec ([email protected])
- ZDI-09-081: Hewlett-Packard Power Manager Administration Web Server Stack Overfl (ZDI Disclosures
) - HPSBMA02474 SSRT090107 rev.1 - HP Power Manager, Remote Execution of Arbitrary C (HP)
- ZDI-09-081: Hewlett-Packard Power Manager Administration Web Server Stack Overfl (Zero Day Initiative)