Hp Hp-Ux vulnerabilities
275 known vulnerabilities affecting hp/hp-ux.
Total CVEs
275
CISA KEV
1
actively exploited
Public exploits
53
Exploited in wild
8
Severity breakdown
CRITICAL42HIGH108MEDIUM97LOW28
Vulnerabilities
Page 2 of 14
CVE-2000-0515P3CRITICALCVSS 10.0PoCv10.20v11.002000-06-07
CVE-2000-0515 [CRITICAL] CVE-2000-0515: The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which
The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges.
nvd
CVE-1999-0696P3CRITICALCVSS 10.0PoCv10.24v11.001999-07-01
CVE-1999-0696 [CRITICAL] CVE-1999-0696: Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd).
Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd).
nvd
CVE-1999-0513P4MEDIUMCVSS 5.0PoCv10.20v11.001998-01-05
CVE-1999-0513 [MEDIUM] CVE-1999-0513: ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denia
ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
nvd
CVE-2005-4316P3HIGHCVSS 7.8PoCv11.00v11.4+2 more2005-12-17
CVE-2005-4316 [HIGH] CVE-2005-4316: HP-UX B.11.00, B.11.04, B.11.11, and B.11.23 allows remote attackers to cause a denial of service vi
HP-UX B.11.00, B.11.04, B.11.11, and B.11.23 allows remote attackers to cause a denial of service via a "Rose Attack" that involves sending a subset of small IP fragments that do not form a complete, larger packet.
nvd
CVE-2002-1605P3HIGHCVSS 7.5PoCv10.20v11.00+3 more2002-09-02
CVE-2002-1605 [HIGH] CVE-2002-1605: Buffer overflow in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows attackers to execute arbitra
Buffer overflow in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows attackers to execute arbitrary code via a long _XKB_CHARSET environment variable to (1) dxpause, (2) dxconsole, or (3) dtsession.
nvd
CVE-2016-2775P3MEDIUMCVSS 5.9vb.11.312016-07-19
CVE-2016-2775 [MEDIUM] CWE-20 CVE-2016-2775: ISC BIND 9.x before 9.9.9-P2, 9.10.x before 9.10.4-P2, and 9.11.x before 9.11.0b2, when lwresd or th
ISC BIND 9.x before 9.9.9-P2, 9.10.x before 9.10.4-P2, and 9.11.x before 9.11.0b2, when lwresd or the named lwres option is enabled, allows remote attackers to cause a denial of service (daemon crash) via a long request that uses the lightweight resolver protocol.
nvd
CVE-2014-2490P3CRITICALCVSS 9.3vb.11.23vb.11.312014-07-17
CVE-2014-2490 [CRITICAL] CVE-2014-2490: Unspecified vulnerability in the Java SE component in Oracle Java SE 7u60 and SE 8u5 allows remote a
Unspecified vulnerability in the Java SE component in Oracle Java SE 7u60 and SE 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
nvd
CVE-2014-7879P3HIGHCVSS 8.5vb.11.11vb.11.23+1 more2014-12-10
CVE-2014-7879 [HIGH] CWE-287 CVE-2014-7879: HP HP-UX B.11.11, B.11.23, and B.11.31, when the PAM configuration includes libpam_updbe, allows rem
HP HP-UX B.11.11, B.11.23, and B.11.31, when the PAM configuration includes libpam_updbe, allows remote authenticated users to bypass authentication, and consequently execute arbitrary code, via unspecified vectors.
nvd
CVE-2008-1668P3CRITICALCVSS 10.0v11.112008-08-13
CVE-2008-1668 [CRITICAL] CWE-264 CVE-2008-1668: ftpd.c in (1) wu-ftpd 2.4.2 and (2) ftpd in HP HP-UX B.11.11 assigns uid 0 to the FTP client in cert
ftpd.c in (1) wu-ftpd 2.4.2 and (2) ftpd in HP HP-UX B.11.11 assigns uid 0 to the FTP client in certain operating-system misconfigurations in which PAM authentication can succeed even though no passwd entry is available for a user, which allows remote attackers to gain privileges, as demonstrated by a login attempt for an LDAP account when nsswitch.
nvd
CVE-2007-6195P3CRITICALCVSS 10.0v11.11v11.232007-12-15
CVE-2007-6195 [CRITICAL] CWE-119 CVE-2007-6195: Buffer overflow in the sw_rpc_agent_init function in swagentd in Software Distributor (SD), and poss
Buffer overflow in the sw_rpc_agent_init function in swagentd in Software Distributor (SD), and possibly other DCE applications, in HP HP-UX B.11.11 and B.11.23 allows remote attackers to execute arbitrary code or cause a denial of service via malformed arguments in an opcode 0x04 DCE RPC request.
nvd
CVE-2004-0940P4HIGHCVSS 7.8PoCv11.00v11.11+2 more2005-02-09
CVE-2004-0940 [HIGH] CWE-131 CVE-2004-0940: Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users
Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.
nvd
CVE-2003-1097P4HIGHCVSS 7.2PoCv10.10v10.16+10 more2003-12-31
CVE-2003-1097 [HIGH] CVE-2003-1097: Buffer overflow in rexec on HP-UX B.10.20, B.11.00, and B.11.04, when setuid root, may allow local u
Buffer overflow in rexec on HP-UX B.10.20, B.11.00, and B.11.04, when setuid root, may allow local users to gain privileges via a long -l option.
nvd
CVE-2002-0679P3CRITICALCVSS 10.0v10.10v10.20+3 more2002-09-05
CVE-2002-0679 [CRITICAL] CVE-2002-0679: Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) a
Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.
nvd
CVE-2007-4241P3CRITICALCVSS 10.0v11.11i2007-08-08
CVE-2007-4241 [CRITICAL] CVE-2007-4241: Buffer overflow in ldcconn in Hewlett-Packard (HP) Controller for Cisco Local Director on HP-UX 11.1
Buffer overflow in ldcconn in Hewlett-Packard (HP) Controller for Cisco Local Director on HP-UX 11.11i allows remote attackers to execute arbitrary code via a long string to TCP port 17781.
nvd
CVE-2007-0915P3CRITICALCVSS 10.0v11.112007-02-14
CVE-2007-0915 [CRITICAL] CVE-2007-0915: Distributed SLS daemon (SLSd) on HP-UX B.11.11 allows remote attackers to overwrite arbitrary files
Distributed SLS daemon (SLSd) on HP-UX B.11.11 allows remote attackers to overwrite arbitrary files and gain privileges via a crafted RPC request.
nvd
CVE-2003-1375P4HIGHCVSS 7.2PoCv10.20v11.00+2 more2003-12-31
CVE-2003-1375 [HIGH] CWE-119 CVE-2003-1375: Buffer overflow in wall for HP-UX 10.20 through 11.11 may allow local users to execute arbitrary cod
Buffer overflow in wall for HP-UX 10.20 through 11.11 may allow local users to execute arbitrary code by calling wall with a large file as an argument.
nvd
CVE-2008-1662P3CRITICALCVSS 10.0vb.11.11vb.11.232008-08-01
CVE-2008-1662 [CRITICAL] CWE-16 CVE-2008-1662: Unspecified vulnerability in the HP System Administration Manager (SAM) on HP-UX B.11.11 and B.11.23
Unspecified vulnerability in the HP System Administration Manager (SAM) on HP-UX B.11.11 and B.11.23, when used to configure NFS, might allow remote attackers to read or modify arbitrary files, related to an "empty systems list."
nvd
CVE-1999-0517P4MEDIUMCVSS 5.9PoCv10v11.001997-01-01
CVE-1999-0517 [MEDIUM] CWE-200 CVE-1999-0517: An SNMP community name is the default (e.g. public), null, or missing.
An SNMP community name is the default (e.g. public), null, or missing.
nvd
CVE-2001-1244P4MEDIUMCVSS 5.0PoCv11.00v11.0.4+1 more2001-07-07
CVE-2001-1244 [MEDIUM] CVE-2001-1244: Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth an
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process.
nvd
CVE-2003-0089P4HIGHCVSS 7.2PoCv11.00v11.112003-12-15
CVE-2003-0089 [HIGH] CVE-2003-0089: Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local use
Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local users to execute arbitrary code via a long LANG environment variable to setuid programs such as (1) swinstall and (2) swmodify.
nvd