HIGH · 10.0

CVE-2001-0134

Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary command...

Vulnerability Description

Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
CompaqArmada Insight Manager4.20
CompaqEnterprise Volume Manager-Command Scripter1.0
CompaqFoundation Agents1.0
CompaqInsight Management Agent4.37e
CompaqInsight Management Desktop Web Agent3.7
CompaqInsight Manager Lc1.3c
CompaqInsight Manager Xe1.0
CompaqIntelligent Cluster Administrator1.0
CompaqManagement Agents4.30j
CompaqOpen San Manager1.0
CompaqSanworks Resource Monitor1.0
CompaqStorage Allocation Reporter1.0
CompaqSurvey Utility2.17
CompaqSystem Healthcheck3.0
DigitalUnix4.0f

References

FAQ

What is CVE-2001-0134?

CVE-2001-0134 is a vulnerability with a CVSS score of 10.0 (HIGH). Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary command...

How severe is CVE-2001-0134?

CVE-2001-0134 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2001-0134?

Check the references section above for vendor advisories and patch information. Affected products include: Compaq Armada Insight Manager, Compaq Enterprise Volume Manager-Command Scripter, Compaq Foundation Agents, Compaq Insight Management Agent, Compaq Insight Management Desktop Web Agent.