This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.
This Signature will detect attempts to exploit a buffer overflow vulnerability in HP OpenView Network Node Manager.
HP OpenView Network Node Manager (NNM) is a fault-management application for IP networks.
NNM is prone to a remote code-execution vulnerability when handling an invalid 'Hostname' parameter. Specifically, the 'getnnmdata.exe' CGI fails to perform a proper length check before copying to a stack buffer.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successful exploits will completely compromise affected computers. Failed exploit attempts will result in a denial-of-service condition.
Updates are available. Please see the references for details.