Secunia Research has discovered a vulnerability in HP Power Manager, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a boundary error when processing parameters sent to the /goform/formExportDataLogs URL. This can be exploited to cause a stack-based buffer overflow via an overly long “fileName” parameter. Successful exploitation allows execution of arbitrary code. Version 4.2.9 is affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/85446/secunia-hppmfedl.txt
Source: https://packetstormsecurity.com/files/85446/HP-Power-Manager-formExportDataLogs-Buffer-Overflow.html

