Secunia Research has discovered a vulnerability in HP OpenView Network Node Manager, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to an integer overflow in ovalarmsrv.exe and can be exploited to cause a heap-based buffer overflow via specially crafted commands sent to port 2954/TCP. Successful exploitation may allow execution of arbitrary code. HP Network Node Manager version 7.53 is affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/77073/secunia-ovalarmsrv.txt
Source: https://packetstormsecurity.com/files/77073/HP-OpenView-Network-Node-Manager-ovalarmsrv-Integer-Overflow.html

