Skip to main content

Vendor archive

hp CVEs

Beta · best-effort

2,439 CVEs tagged to vendor hp584 Critical, 852 High, 902 Medium, 101 Low, 0 Unrated.

CVE-2000-0801

Published Oct 20, 2000

Buffer overflow in bdf program in HP-UX 11.00 may allow local users to gain root privileges via a long -t option.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0636

Published Jul 19, 2000

HP JetDirect printers versions G.08.20 and H.08.20 and earlier allow remote attackers to cause a denial of service via a malformed FTP quote command.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0573

Published Jul 7, 2000

The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to execute arbitrary commands via the SITE EXE…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0616

Published Jun 26, 2000

Vulnerability in HP TurboIMAGE DBUTIL allows local users to gain additional privileges via DBUTIL.PUB.SYS.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0515

Published Jun 7, 2000

The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0558

Published Jun 6, 2000

Buffer overflow in HP Openview Network Node Manager 6.1 allows remote attackers to execute arbitrary commands via the Alarm service (OVALARMSRV) on port 2345.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0468

Published Jun 2, 2000

man in HP-UX 10.20 and 11 allows local attackers to overwrite files via a symlink attack.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0443

Published May 24, 2000

The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0444

Published May 24, 2000

HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0414

Published May 4, 2000

Vulnerability in shutdown command for HP-UX 11.X and 10.X allows allows local users to gain privileges via malformed input variables.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0083

Published Apr 18, 2000

HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local users to cause a denial of service or gain additional privileges.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0251

Published Apr 6, 2000

HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-0693

Published Mar 2, 2000

Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0179

Published Feb 28, 2000

HP OpenView OmniBack 2.55 allows remote attackers to cause a denial of service via a large number of connections to port 5555.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0159

Published Feb 17, 2000

HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0095

Published Jan 24, 2000

The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of traffic in response to small packets, allowing remote attacke…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-0992

Published Jan 18, 2000

HP VirtualVault with the PHSS_17692 patch allows unprivileged processes to bypass access restrictions via the Trusted Gateway Proxy (TGP).

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0077

Published Jan 2, 2000

The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0078

Published Jan 2, 2000

The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1324

Published Dec 31, 1999

VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accounts that exceed the break-in limit threshold for failed log…

CVSS 9.8 · Critical
Buzz score
4.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-1999-1573

Published Dec 28, 1999

Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-1163

Published Nov 24, 1999

Vulnerability in HP Series 800 S/X/V Class servers allows remote attackers to gain access to the S/X/V Class console via the Service Support Processor (SSP) Teststation.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 2,401-2,425 of 2,439 CVEsPage 97 of 98