Skip to main content

Vendor/product archive

hp / hp-ux CVEs

Beta · best-effort

415 CVEs tagged to hp / hp-ux51 Critical, 129 High, 202 Medium, 33 Low, 0 Unrated.

CVE-2001-1564

Published Dec 31, 2001

setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on processes after setuid or setgid privileges are dropped, which co…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-1198

Published Dec 15, 2001

RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0809

Published Dec 6, 2001

Vulnerability in CIFS/9000 Server (SAMBA) A.01.06 and earlier in HP-UX 11.0 and 11.11, when configured as a print server, allows local users to overwrite arbitrary files by modify…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0817

Published Dec 6, 2001

Vulnerability in HP-UX line printer daemon (rlpdaemon) in HP-UX 10.01 through 11.11 allows remote attackers to modify arbitrary files and gain root privileges via a certain print…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0772

Published Oct 18, 2001

Buffer overflows and other vulnerabilities in multiple Common Desktop Environment (CDE) modules in HP-UX 10.10 through 11.11 allow attackers to cause a denial of service and possi…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1124

Published Oct 1, 2001

rpcbind in HP-UX 11.00, 11.04 and 11.11 allows remote attackers to cause a denial of service (core dump) via a malformed RPC portmap requests, possibly related to a buffer overflo…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0668

Published Sep 20, 2001

Buffer overflow in line printer daemon (rlpdaemon) in HP-UX 10.01 through 11.11 allows remote attackers to execute arbitrary commands.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1136

Published Sep 13, 2001

The libsecurity library in HP-UX 11.04 (VVOS) allows attackers to cause a denial of service.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0978

Published Sep 3, 2001

login in HP-UX 10.26 does not record failed login attempts in /var/adm/btmp, which could allow attackers to conduct brute force password guessing attacks without being detected or…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0979

Published Sep 3, 2001

Buffer overflow in swverify in HP-UX 11.0, and possibly other programs, allows local users to gain privileges via a long command line argument.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0607

Published Aug 22, 2001

asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure pr…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1264

Published Jul 19, 2001

Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-1182

Published Jul 17, 2001

Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass certain security checks and gain privileges.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1181

Published Jul 16, 2001

Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0488

Published Jun 27, 2001

pcltotiff in HP-UX 10.x has unnecessary set group id permissions, which allows local users to cause a denial of service.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0248

Published Jun 18, 2001

Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generat…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0249

Published Jun 18, 2001

Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generat…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0379

Published Jun 18, 2001

Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1256

Published Jun 11, 2001

kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp t…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0311

Published Jun 2, 2001

Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0551

Published May 22, 2001

Buffer overflow in CDE Print Viewer (dtprintinfo) allows local users to execute arbitrary code by copying text from the clipboard into the Help window.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0266

Published May 3, 2001

Vulnerability in Software Distributor SD-UX in HP-UX 11.0 and earlier allows local users to gain privileges.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0219

Published Mar 26, 2001

Vulnerability in Support Tools Manager (xstm,cstm,stm) in HP-UX 11.11 and earlier allows local users to cause a denial of service.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 351-375 of 415 CVEsPage 15 of 17