Vulnerability Description
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Compaq | Armada Insight Manager | 4.20 |
| Compaq | Enterprise Volume Manager-Command Scripter | 1.0 |
| Compaq | Foundation Agents | 1.0 |
| Compaq | Insight Management Agent | 4.37e |
| Compaq | Insight Management Desktop Web Agent | 3.7 |
| Compaq | Insight Manager Lc | 1.3c |
| Compaq | Insight Manager Xe | 1.0 |
| Compaq | Intelligent Cluster Administrator | 1.0 |
| Compaq | Management Agents | 4.30j |
| Compaq | Open San Manager | 1.0 |
| Compaq | Sanworks Resource Monitor | 1.0 |
| Compaq | Storage Allocation Reporter | 1.0 |
| Compaq | Survey Utility | 2.17 |
| Compaq | System Healthcheck | 3.0 |
| Digital | Unix | 4.0f |
References
- http://marc.info/?l=bugtraq&m=97967435023835&w=2
- http://www.securityfocus.com/bid/2200PatchVendor Advisory
- http://www5.compaq.com/products/servers/management/agentsecurity.htmlPatch
- http://marc.info/?l=bugtraq&m=97967435023835&w=2
- http://www.securityfocus.com/bid/2200PatchVendor Advisory
- http://www5.compaq.com/products/servers/management/agentsecurity.htmlPatch
FAQ
What is CVE-2001-0134?
CVE-2001-0134 is a vulnerability with a CVSS score of 10.0 (HIGH). Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary command...
How severe is CVE-2001-0134?
CVE-2001-0134 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0134?
Check the references section above for vendor advisories and patch information. Affected products include: Compaq Armada Insight Manager, Compaq Enterprise Volume Manager-Command Scripter, Compaq Foundation Agents, Compaq Insight Management Agent, Compaq Insight Management Desktop Web Agent.