Vulnerabilities (CVE)

Filtered by vendor Hp Subscribe
Filtered by product Hp-ux
Total 477 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0324 1 Hp 1 Hp-ux 2008-09-09 7.2 HIGH N/A
ppl program in HP-UX allows local users to create root files through symlinks.
CVE-1999-0131 8 Bsdi, Digital, Eric Allman and 5 more 9 Bsd Os, Osf 1, Sendmail and 6 more 2008-09-09 7.2 HIGH N/A
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
CVE-1999-0130 7 Bsdi, Caldera, Eric Allman and 4 more 7 Bsd Os, Network Desktop, Sendmail and 4 more 2008-09-09 7.2 HIGH N/A
Local users can start Sendmail in daemon mode and gain root privileges.
CVE-1999-0014 3 Cde, Hp, Ibm 4 Cde, Hp-ux, Vvos and 1 more 2008-09-09 7.2 HIGH N/A
Unauthorized privileged access or denial of service via dtappgather program in CDE.
CVE-1999-0057 5 Eric Allman, Freebsd, Hp and 2 more 7 Vacation, Freebsd, Hp-ux and 4 more 2008-09-09 7.5 HIGH N/A
Vacation program allows command execution by remote users through a sendmail command.
CVE-2005-3277 1 Hp 1 Hp-ux 2008-09-05 10.0 HIGH N/A
The LPD service in HP-UX 10.20 11.11 (11i) and earlier allows remote attackers to execute arbitrary code via shell metacharacters ("`" or single backquote) in a request that is not properly handled when an error occurs, as demonstrated by killing the connection, a different vulnerability than CVE-2002-1473.
CVE-2003-0061 1 Hp 1 Hp-ux 2008-09-05 7.2 HIGH N/A
Buffer overflow in passwd for HP UX B.10.20 allows local users to execute arbitrary commands with root privileges via a long LANG environment variable.
CVE-2002-2363 1 Hp 1 Hp-ux 2008-09-05 7.2 HIGH N/A
VJE.VJE-RUN in HP-UX 11.00 adds bin to /etc/PATH, which could allow local users to gain privileges.
CVE-2002-1406 1 Hp 1 Hp-ux 2008-09-05 7.2 HIGH N/A
Unknown vulnerability in passwd for VVOS HP-UX 11.04, with unknown impact, related to "Unexpected behavior."
CVE-2002-1473 1 Hp 1 Hp-ux 2008-09-05 4.6 MEDIUM N/A
Multiple buffer overflows in lp subsystem for HP-UX 10.20 through 11.11 (11i) allow local users to cause a denial of service and possibly execute arbitrary code.
CVE-2002-0992 1 Hp 1 Hp-ux 2008-09-05 2.1 LOW N/A
Unknown vulnerability in IPV6 functionality for DCE daemons (1) dced or (2) rpcd on HP-UX 11.11 allows attackers to cause a denial of service (crash) via an attack that modifies internal data.
CVE-2001-0978 1 Hp 1 Hp-ux 2008-09-05 7.5 HIGH N/A
login in HP-UX 10.26 does not record failed login attempts in /var/adm/btmp, which could allow attackers to conduct brute force password guessing attacks without being detected or observed using the lastb program.
CVE-2001-0266 1 Hp 1 Hp-ux 2008-09-05 7.2 HIGH N/A
Vulnerability in Software Distributor SD-UX in HP-UX 11.0 and earlier allows local users to gain privileges.
CVE-2000-1127 1 Hp 1 Hp-ux 2008-09-05 3.6 LOW N/A
registrar in the HP resource monitor service allows local users to read and modify arbitrary files by renaming the original registrar.log log file and creating a symbolic link to the target file, to which registrar appends log information and sets the permissions to be world readable.
CVE-2000-0730 1 Hp 1 Hp-ux 2008-09-05 4.6 MEDIUM N/A
Vulnerability in newgrp command in HP-UX 11.0 allows local users to gain privileges.
CVE-2000-0801 1 Hp 1 Hp-ux 2008-09-05 7.2 HIGH N/A
Buffer overflow in bdf program in HP-UX 11.00 may allow local users to gain root privileges via a long -t option.
CVE-2000-0699 1 Hp 1 Hp-ux 2008-09-05 10.0 HIGH N/A
Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via format strings in the PASS command.