Hp Hp-Ux vulnerabilities

275 known vulnerabilities affecting hp/hp-ux.

Total CVEs
275
CISA KEV
1
actively exploited
Public exploits
53
Exploited in wild
2
Severity breakdown
CRITICAL42HIGH109MEDIUM96LOW28

Vulnerabilities

Page 12 of 14
CVE-1999-0436MEDIUMCVSS 4.6v10.20v11.001999-03-01
CVE-1999-0436 [MEDIUM] CVE-1999-0436: Domain Enterprise Server Management System (DESMS) in HP-UX allows local users to gain privileges. Domain Enterprise Server Management System (DESMS) in HP-UX allows local users to gain privileges.
nvd
CVE-1999-1247HIGHCVSS 7.2v91999-02-24
CVE-1999-1247 [HIGH] CVE-1999-1247: Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privi Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privileges.
nvd
CVE-1999-0353CRITICALCVSS 9.3v10.01v10.10+2 more1999-02-10
CVE-1999-0353 [CRITICAL] CVE-1999-0353: rpc.pcnfsd in HP gives remote root access by changing the permissions on the main printer spool dire rpc.pcnfsd in HP gives remote root access by changing the permissions on the main printer spool directory.
nvd
CVE-2000-0005HIGHCVSS 7.2v7.00v7.02+33 more1999-01-02
CVE-2000-0005 [HIGH] CVE-2000-0005: HP-UX aserver program allows local users to gain privileges via a symlink attack. HP-UX aserver program allows local users to gain privileges via a symlink attack.
nvd
CVE-1999-0057HIGHCVSS 7.5v9v10.00+2 more1998-11-16
CVE-1999-0057 [HIGH] CVE-1999-0057: Vacation program allows command execution by remote users through a sendmail command. Vacation program allows command execution by remote users through a sendmail command.
nvd
CVE-1999-0779MEDIUMCVSS 5.0v10.01v10.10+2 more1998-09-03
CVE-1999-0779 [MEDIUM] CVE-1999-0779: Denial of service in HP-UX SharedX recserv program. Denial of service in HP-UX SharedX recserv program.
nvd
CVE-1999-1136MEDIUMCVSS 4.6≤ 11.001998-07-30
CVE-1999-1136 [MEDIUM] CWE-200 CVE-1999-1136: Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Response Center Predictive systems.
nvd
CVE-1999-0008CRITICALCVSS 10.0v10.34v11.001998-06-08
CVE-1999-0008 [CRITICAL] CVE-1999-0008: Buffer overflow in NIS+, in Sun's rpc.nisd program. Buffer overflow in NIS+, in Sun's rpc.nisd program.
nvd
CVE-1999-0003CRITICALCVSS 10.0PoCv10.01v10.02+2 more1998-04-01
CVE-1999-0003 [CRITICAL] CVE-1999-0003: Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd). Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
nvd
CVE-1999-0502HIGHCVSS 7.5PoCv10.20v111998-03-01
CVE-1999-0502 [HIGH] CVE-1999-0502: A Unix account has a default, null, blank, or missing password. A Unix account has a default, null, blank, or missing password.
nvd
CVE-1999-0014HIGHCVSS 7.2PoCv10.10v10.20+1 more1998-01-21
CVE-1999-0014 [HIGH] CVE-1999-0014: Unauthorized privileged access or denial of service via dtappgather program in CDE. Unauthorized privileged access or denial of service via dtappgather program in CDE.
nvd
CVE-1999-0513MEDIUMCVSS 5.0PoCv10.20v11.001998-01-05
CVE-1999-0513 [MEDIUM] CVE-1999-0513: ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denia ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
nvd
CVE-1999-0216MEDIUMCVSS 5.0v101997-11-01
CVE-1999-0216 [MEDIUM] CVE-1999-0216: Denial of service of inetd on Linux through SYN and RST packets. Denial of service of inetd on Linux through SYN and RST packets.
nvd
CVE-1999-0097CRITICALCVSS 10.0v9.00v9.01+14 more1997-10-29
CVE-1999-0097 [CRITICAL] CVE-1999-0097: The AIX FTP client can be forced to execute commands from a malicious server through shell metachara The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).
nvd
CVE-1999-1213MEDIUMCVSS 5.0v10.301997-10-01
CVE-1999-1213 [MEDIUM] CVE-1999-1213: Vulnerability in telnet service in HP-UX 10.30 allows attackers to cause a denial of service. Vulnerability in telnet service in HP-UX 10.30 allows attackers to cause a denial of service.
nvd
CVE-1999-1139HIGHCVSS 7.2≤ 11.001997-09-01
CVE-1999-1139 [HIGH] CVE-1999-1139: Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the IOERROR.mytty file.
nvd
CVE-1999-1133MEDIUMCVSS 4.6v9v101997-09-01
CVE-1999-1133 [MEDIUM] CVE-1999-1133: HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, ( HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, (2) vuepad, (3) dtfile, or (4) dtpad, which do not authenticate users.
nvd
CVE-1999-1308MEDIUMCVSS 4.6v10.201997-07-31
CVE-1999-1308 [MEDIUM] CVE-1999-1308: Certain programs in HP-UX 10.20 do not properly handle large user IDs (UID) or group IDs (GID) over Certain programs in HP-UX 10.20 do not properly handle large user IDs (UID) or group IDs (GID) over 60000, which could allow local users to gain privileges.
nvd
CVE-1999-0962HIGHCVSS 7.2v9v101997-05-14
CVE-1999-0962 [HIGH] CVE-1999-0962: Buffer overflow in HPUX passwd command allows local users to gain root privileges via a command line Buffer overflow in HPUX passwd command allows local users to gain root privileges via a command line option.
nvd
CVE-1999-0040HIGHCVSS 7.2PoCv9.00v9.01+11 more1997-05-01
CVE-1999-0040 [HIGH] CVE-1999-0040: Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
nvd