Skip to content
COOEY

EXPOSURES › CVE-2005-2773

CVE-2005-2773

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2022-03-25 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2005-2773 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 72/100 rceexploited-in-wildunpatched

HP OpenView Network Node Manager allowed remote attackers to execute arbitrary commands due to an unpatched vulnerability.

This unpatched remote code execution flaw in HP OpenView Network Node Manager enabled attackers to run arbitrary commands on the system, posing a severe risk to network management infrastructure. DIB organizations must ensure all legacy and enterprise management software is patched, as unpatched CVEs are a primary compliance failure under NIST 800-171. The vulnerability was actively exploited in the wild, demonstrating the critical need for continuous patch management.

Shame score — The vendor failed to patch a known, actively exploited vulnerability in a network management product, leading to potential system compromise and demonstrating severe negligence in maintaining software security.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

HP OpenView Network Node Manager could allow a remote attacker to execute arbitrary commands on the system.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.