CVE-2006-5782

radexecd.exe in HP OpenView Client Configuraton Manager (CCM) does not require authentication before executing commands in the installation directory, which allows remote attackers to cause a denial of service (reboot) by calling radbootw.exe or create arbitrary files by calling radcrecv.

Date published : 2006-11-08

http://www.securityfocus.com/archive/1/450942/100/0/threaded

http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00795552