Stack-based buffer overflow in HP Power Manager
CVE-2009-3999

Currently unrated

Key Information:

Vendor

HP

Vendor
CVE Published:
20 January 2010

What is CVE-2009-3999?

A stack-based buffer overflow exists in the goform/formExportDataLogs function within HP Power Manager, prior to version 4.2.10. This flaw enables remote attackers to execute arbitrary code by exploiting the vulnerability through a specially crafted long 'fileName' parameter. The issue poses a significant risk, allowing unauthorized manipulation of the system.

References

EPSS Score

70% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.