Multiple unspecified vulnerabilities in JP1/Cm2/Network Node Manager (NNM) before 07-10-05, and before 08-00-02 in the 08-x series, allow remote attackers to execute arbitrary code, cause a denial of service, or trigger invalid Web utility behavior.
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Link | Tags |
---|---|
http://osvdb.org/33528 | vdb entry |
http://www.vupen.com/english/advisories/2007/0739 | vdb entry |
http://osvdb.org/33529 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/32683 | vdb entry |
http://secunia.com/advisories/24276 | third party advisory patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/32682 | vdb entry |
http://www.hitachi-support.com/security_e/vuls_e/HS07-002_e/index-e.html | patch |