CVE-2001-0134

UnknownEPSS 4.01%

Last modified

CVE-2001-0134 is a vulnerability of currently unknown severity. Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.. EPSS estimates a 4.01% chance of exploitation in the next 30 days.

Description

Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.

Metrics

EPSS Probability
4.01%

89.3th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
CompaqArmada Insight Manager4.20
CompaqArmada Insight Manager4.20j
CompaqEnterprise Volume Manager-Command Scripter1.0
CompaqEnterprise Volume Manager-Command Scripter1.1
CompaqFoundation Agents1.0
CompaqFoundation Agents2.1
CompaqFoundation Agents4.0
CompaqFoundation Agents4.90
CompaqInsight Management Agent4.37e
CompaqInsight Management Desktop Web Agent3.7
CompaqInsight Manager Lc1.3c
CompaqInsight Manager Lc1.50a
CompaqInsight Manager Xe1.0
CompaqInsight Manager Xe1.21
CompaqIntelligent Cluster Administrator1.0
CompaqIntelligent Cluster Administrator2.1
CompaqManagement Agents4.30j
CompaqManagement Agents4.35j
CompaqManagement Agents4.36e
CompaqManagement Agents4.36j
CompaqOpen San Manager1.0
CompaqSanworks Resource Monitor1.0
CompaqStorage Allocation Reporter1.0
CompaqSurvey Utility2.17
CompaqSurvey Utility2.18
CompaqSurvey Utility2.33
CompaqSystem Healthcheck3.0
DigitalUnix4.0f
DigitalUnix4.0g
DigitalUnix5.0

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2001-0134?
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.
How severe is CVE-2001-0134?
Severity scoring for CVE-2001-0134 is pending analysis. The EPSS model estimates a 4.01% probability of exploitation in the next 30 days.
How do I fix CVE-2001-0134?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2001-0134?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST