Format string vulnerability in ovet_demandpoll.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via format string specifiers in the sel parameter.
http://zerodayinitiative.com/advisories/ZDI-10-081/
http://www.securityfocus.com/archive/1/511245/100/0/threaded