cbcvebase.

Hp Hp-Ux vulnerabilities

275 known vulnerabilities affecting hp/hp-ux.

Total CVEs
275
CISA KEV
1
actively exploited
Public exploits
53
Exploited in wild
8
Severity breakdown
CRITICAL42HIGH108MEDIUM97LOW28

Vulnerabilities

Page 11 of 14
CVE-1999-0690P4HIGHCVSS 7.2v101999-07-01
CVE-1999-0690 [HIGH] CVE-1999-0690: HP CDE program includes the current directory in root's PATH variable. HP CDE program includes the current directory in root's PATH variable.
nvd
CVE-2003-1374P4MEDIUMCVSS 4.6v112003-12-31
CVE-2003-1374 [MEDIUM] CWE-119 CVE-2003-1374: Buffer overflow in disable of HP-UX 11.0 may allow local users to execute arbitrary code via a long Buffer overflow in disable of HP-UX 11.0 may allow local users to execute arbitrary code via a long argument to the (1) -r or (2)-c options.
nvd
CVE-2002-1607P4MEDIUMCVSS 4.6v10.20v11.00+3 more2002-08-31
CVE-2002-1607 [MEDIUM] CVE-2002-1607: Buffer overflow in ypmatch in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to ex Buffer overflow in ypmatch in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to execute arbitrary code.
nvd
CVE-2002-1608P4MEDIUMCVSS 4.6v10.20v11.00+3 more2002-08-31
CVE-2002-1608 [MEDIUM] CVE-2002-1608: Buffer overflow in traceroute in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to Buffer overflow in traceroute in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to execute arbitrary code.
nvd
CVE-2007-0394P4MEDIUMCVSS 4.6v11.112007-01-19
CVE-2007-0394 [MEDIUM] CVE-2007-0394: HP HP-UX B11.11 does not properly verify the status of file descriptors before setuid execution, whi HP HP-UX B11.11 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.
nvd
CVE-2000-0730P4MEDIUMCVSS 4.6v11.002000-10-20
CVE-2000-0730 [MEDIUM] CVE-2000-0730: Vulnerability in newgrp command in HP-UX 11.0 allows local users to gain privileges. Vulnerability in newgrp command in HP-UX 11.0 allows local users to gain privileges.
nvd
CVE-2004-1375P4MEDIUMCVSS 4.6v11.00v11.4+3 more2004-12-23
CVE-2004-1375 [MEDIUM] CVE-2004-1375: Unknown vulnerability in System Administration Manager (SAM) in HP-UX B.11.00, B.11.11, B.11.22, and Unknown vulnerability in System Administration Manager (SAM) in HP-UX B.11.00, B.11.11, B.11.22, and B.11.23 allows local users to gain privileges.
nvd
CVE-1999-0961P4MEDIUMCVSS 6.2v9.04v9.051996-09-21
CVE-1999-0961 [MEDIUM] CVE-1999-0961: HPUX sysdiag allows local users to gain root privileges via a symlink attack during log file creatio HPUX sysdiag allows local users to gain root privileges via a symlink attack during log file creation.
nvd
CVE-1999-0779P4MEDIUMCVSS 5.0v10.01v10.10+2 more1998-09-03
CVE-1999-0779 [MEDIUM] CVE-1999-0779: Denial of service in HP-UX SharedX recserv program. Denial of service in HP-UX SharedX recserv program.
nvd
CVE-2001-0106P4MEDIUMCVSS 5.0≤ 11.042001-02-12
CVE-2001-0106 [MEDIUM] CVE-2001-0106: Vulnerability in inetd server in HP-UX 11.04 and earlier allows attackers to cause a denial of servi Vulnerability in inetd server in HP-UX 11.04 and earlier allows attackers to cause a denial of service when the "swait" state is used by a server.
nvd
CVE-1999-0686P4MEDIUMCVSS 5.0v10.241999-05-07
CVE-1999-0686 [MEDIUM] CVE-1999-0686: Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL. Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL.
nvd
CVE-2002-0279P4MEDIUMCVSS 4.6v11.112002-05-31
CVE-2002-0279 [MEDIUM] CVE-2002-0279: The kernel in HP-UX 11.11 does not properly provide arguments for setrlimit, which could allow local The kernel in HP-UX 11.11 does not properly provide arguments for setrlimit, which could allow local attackers to cause a denial of service (kernel panic) and possibly gain privileges.
nvd
CVE-2002-1611P4MEDIUMCVSS 4.6v10.20v11.00+3 more2002-08-30
CVE-2002-1611 [MEDIUM] CVE-2002-1611: Buffer overflow in quot in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain Buffer overflow in quot in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
nvd
CVE-2002-1609P4MEDIUMCVSS 4.6v10.20v11.00+3 more2002-08-30
CVE-2002-1609 [MEDIUM] CVE-2002-1609: Buffer overflow in binmail in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to ga Buffer overflow in binmail in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
nvd
CVE-2000-0966P4MEDIUMCVSS 4.6v10.00v11.002000-12-19
CVE-2000-0966 [MEDIUM] CVE-2000-0966: Buffer overflows in lpspooler in the fileset PrinterMgmt.LP-SPOOL of HP-UX 11.0 and earlier allows l Buffer overflows in lpspooler in the fileset PrinterMgmt.LP-SPOOL of HP-UX 11.0 and earlier allows local users to gain privileges.
nvd
CVE-1999-1311P4MEDIUMCVSS 4.6v10.10v10.201997-01-07
CVE-1999-1311 [MEDIUM] CVE-1999-1311: Vulnerability in dtlogin and dtsession in HP-UX 10.20 and 10.10 allows local users to bypass authent Vulnerability in dtlogin and dtsession in HP-UX 10.20 and 10.10 allows local users to bypass authentication and gain privileges.
nvd
CVE-2006-1248P4MEDIUMCVSS 4.6v11.00v11.11+1 more2006-03-17
CVE-2006-1248 [MEDIUM] CVE-2006-1248: Unspecified vulnerability in usermod in HP-UX B.11.00, B.11.11, and B.11.23, when run with certain o Unspecified vulnerability in usermod in HP-UX B.11.00, B.11.11, and B.11.23, when run with certain options that involve a new home directory, might cause usermod to change the ownership of all directories and files under the new directory, which might result in less secure permissions than intended.
nvd
CVE-1999-0216P4MEDIUMCVSS 5.0v101997-11-01
CVE-1999-0216 [MEDIUM] CVE-1999-0216: Denial of service of inetd on Linux through SYN and RST packets. Denial of service of inetd on Linux through SYN and RST packets.
nvd
CVE-2010-1032P4MEDIUMCVSS 4.9vb.11.112010-04-21
CVE-2010-1032 [MEDIUM] CVE-2010-1032: Unspecified vulnerability in HP HP-UX B.11.11 allows local users to cause a denial of service via un Unspecified vulnerability in HP HP-UX B.11.11 allows local users to cause a denial of service via unknown vectors.
nvd
CVE-2007-5536P4MEDIUMCVSS 4.9v11.11v11.23+1 more2007-10-18
CVE-2007-5536 [MEDIUM] CVE-2007-5536: Unspecified vulnerability in OpenSSL before A.00.09.07l on HP-UX B.11.11, B.11.23, and B.11.31 allow Unspecified vulnerability in OpenSSL before A.00.09.07l on HP-UX B.11.11, B.11.23, and B.11.31 allows local users to cause a denial of service via unspecified vectors.
nvd
Hp Hp-Ux vulnerabilities | cvebase