cbcvebase.

Hp Hp-Ux vulnerabilities

275 known vulnerabilities affecting hp/hp-ux.

Total CVEs
275
CISA KEV
1
actively exploited
Public exploits
53
Exploited in wild
8
Severity breakdown
CRITICAL42HIGH108MEDIUM97LOW28

Vulnerabilities

Page 13 of 14
CVE-2008-4416P4MEDIUMCVSS 4.6vb.11.312008-12-05
CVE-2008-4416 [MEDIUM] CVE-2008-4416: Unspecified vulnerability in the kernel in HP HP-UX B.11.31 allows local users to cause a denial of Unspecified vulnerability in the kernel in HP HP-UX B.11.31 allows local users to cause a denial of service via unknown vectors.
nvd
CVE-1999-0132P4LOWCVSS 2.1v9v101996-08-15
CVE-1999-0132 [LOW] CVE-1999-0132: Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root acce Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root access.
nvd
CVE-2001-0809P4LOWCVSS 2.1v11.00v11.112001-12-06
CVE-2001-0809 [LOW] CVE-2001-0809: Vulnerability in CIFS/9000 Server (SAMBA) A.01.06 and earlier in HP-UX 11.0 and 11.11, when configur Vulnerability in CIFS/9000 Server (SAMBA) A.01.06 and earlier in HP-UX 11.0 and 11.11, when configured as a print server, allows local users to overwrite arbitrary files by modifying certain resources.
nvd
CVE-2010-1030P4MEDIUMCVSS 4.4vb.11.312010-03-31
CVE-2010-1030 [MEDIUM] CVE-2010-1030: Unspecified vulnerability in HP-UX B.11.31, with AudFilter rules enabled, allows local users to caus Unspecified vulnerability in HP-UX B.11.31, with AudFilter rules enabled, allows local users to cause a denial of service via unknown vectors.
nvd
CVE-2011-0891P4MEDIUMCVSS 4.4vb.11.23vb.11.312011-04-04
CVE-2011-0891 [MEDIUM] CVE-2011-0891: Unspecified vulnerability in the OS-Core.CORE2-KRN fileset in HP HP-UX B.11.23 and B.11.31 allows lo Unspecified vulnerability in the OS-Core.CORE2-KRN fileset in HP HP-UX B.11.23 and B.11.31 allows local users to cause a denial of service via unknown vectors.
nvd
CVE-2005-2993P4LOWCVSS 1.7v11.00v11.4+2 more2005-09-20
CVE-2005-2993 [LOW] CVE-2005-2993: Unspecified vulnerability in the FTP Daemon (ftpd) for HP Tru64 UNIX 4.0F PK8 and other versions up Unspecified vulnerability in the FTP Daemon (ftpd) for HP Tru64 UNIX 4.0F PK8 and other versions up to HP Tru64 UNIX 5.1B-3, and HP-UX B.11.00, B.11.04, B.11.11, and B.11.23, allows remote authenticated users to cause a denial of service (hang).
nvd
CVE-2007-4590P4LOWCVSS 3.3v11.11v11.23+1 more2007-08-29
CVE-2007-4590 [LOW] CVE-2007-4590: The get_system_info command in Ignite-UX C.7.0 through C.7.3, and DynRootDisk (DRD) A.1.0.16.417 thr The get_system_info command in Ignite-UX C.7.0 through C.7.3, and DynRootDisk (DRD) A.1.0.16.417 through A.2.0.0.592, on HP-UX B.11.11, B.11.23, and B.11.31 does not inform local users of networking changes made by the command, which has unknown impact and attack vectors.
nvd
CVE-2004-2665P4MEDIUMCVSS 4.9v11.00v11.4+1 more2004-12-31
CVE-2004-2665 [MEDIUM] CVE-2004-2665: Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport software in HP- Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport software in HP-UX B.11.00, B.11.04, and B.11.11 before 20040628 allows local users to cause a denial of service via unspecified vectors.
nvd
CVE-1999-0688P4MEDIUMCVSS 4.6v10.24v11.001999-07-01
CVE-1999-0688 [MEDIUM] CVE-1999-0688: Buffer overflows in HP Software Distributor (SD) for HPUX 10.x and 11.x. Buffer overflows in HP Software Distributor (SD) for HPUX 10.x and 11.x.
nvd
CVE-2001-0379P4MEDIUMCVSS 4.6v11.112001-06-18
CVE-2001-0379 [MEDIUM] CVE-2001-0379: Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights.
nvd
CVE-2000-0083P4MEDIUMCVSS 4.6v10v112000-04-18
CVE-2000-0083 [MEDIUM] CVE-2000-0083: HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local u HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local users to cause a denial of service or gain additional privileges.
nvd
CVE-1999-1239P4MEDIUMCVSS 4.6v91994-07-13
CVE-1999-1239 [MEDIUM] CVE-1999-1239: HP-UX 9.x does not properly enable the Xauthority mechanism in certain conditions, which could allow HP-UX 9.x does not properly enable the Xauthority mechanism in certain conditions, which could allow local users to access the X display even when they have not explicitly been authorized to do so.
nvd
CVE-2006-4795P4MEDIUMCVSS 4.6v11.11v11.232006-09-14
CVE-2006-4795 [MEDIUM] CVE-2006-4795: Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport software in HP- Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport software in HP-UX B.11.11 and B.11.23 before 20060912 allows local users to cause a denial of service via unspecified vectors.
nvd
CVE-1999-0129P4MEDIUMCVSS 4.6v10.00v10.01+3 more1996-12-03
CVE-1999-0129 [MEDIUM] CVE-1999-0129: Sendmail allows local users to write to a file and gain group permissions via a .forward or :include Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
nvd
CVE-1999-1136P4MEDIUMCVSS 4.6≤ 11.001998-07-30
CVE-1999-1136 [MEDIUM] CWE-200 CVE-1999-1136: Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Response Center Predictive systems.
nvd
CVE-2002-1409P4LOWCVSS 2.1v11.00v11.04+1 more2003-04-11
CVE-2002-1409 [LOW] CVE-2002-1409: ptrace on HP-UX 11.00 through 11.11 allows local users to cause a denial of service (data page fault ptrace on HP-UX 11.00 through 11.11 allows local users to cause a denial of service (data page fault panic) via "an incorrect reference to thread register state."
nvd
CVE-2002-0577P4LOWCVSS 2.1v11.00v11.0.4+1 more2002-06-18
CVE-2002-0577 [LOW] CVE-2002-0577: Vulnerability in passwd for HP-UX 11.00 and 11.11 allows local users to corrupt the password file an Vulnerability in passwd for HP-UX 11.00 and 11.11 allows local users to corrupt the password file and cause a denial of service.
nvd
CVE-2002-0798P4LOWCVSS 2.1v11.00v11.112002-08-12
CVE-2002-0798 [LOW] CVE-2002-0798: Vulnerability in swinstall for HP-UX 11.00 and 11.11 allows local users to view obtain data views fo Vulnerability in swinstall for HP-UX 11.00 and 11.11 allows local users to view obtain data views for files that cannot be directly read by the user, which reportedly can be used to cause a denial of service.
nvd
CVE-2001-0219P4LOWCVSS 2.1≤ 11.11v10.20+1 more2001-03-26
CVE-2001-0219 [LOW] CVE-2001-0219: Vulnerability in Support Tools Manager (xstm,cstm,stm) in HP-UX 11.11 and earlier allows local users Vulnerability in Support Tools Manager (xstm,cstm,stm) in HP-UX 11.11 and earlier allows local users to cause a denial of service.
nvd
CVE-2002-1668P4LOWCVSS 2.1v11.00v11.0.4+1 more2002-12-31
CVE-2002-1668 [LOW] CVE-2002-1668: HP-UX 11.11 and earlier allows local users to cause a denial of service (kernel deadlock), due to a HP-UX 11.11 and earlier allows local users to cause a denial of service (kernel deadlock), due to a "file system weakness" that is possibly via an mmap() system call and performing an I/O operation using data from the mapped buffer on the file descriptor for the mapped file.
nvd
Hp Hp-Ux vulnerabilities | cvebase