PT-2012-4601 · Hewlett Packard · Inodemngchecker.Exe+1
Luigi Auriemma
·
Published
2012-08-30
·
Updated
2019-10-09
·
CVE-2012-3254
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
HP iNode Management Center versions prior to iNode PC 5.1 E0304
Description
The issue involves multiple unspecified vulnerabilities that allow remote attackers to execute arbitrary code via crafted input. A specific example is a stack-based buffer overflow in iNodeMngChecker.exe when processing a crafted 0x0A0BF007 packet.
Recommendations
For versions prior to iNode PC 5.1 E0304, update to iNode PC 5.1 E0304 or later to resolve the issue. As a temporary workaround, consider restricting access to the iNodeMngChecker.exe to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Inode Management Center
Inodemngchecker.Exe