cbcvebase.

Hp Hp-Ux vulnerabilities

275 known vulnerabilities affecting hp/hp-ux.

Total CVEs
275
CISA KEV
1
actively exploited
Public exploits
53
Exploited in wild
8
Severity breakdown
CRITICAL42HIGH108MEDIUM97LOW28

Vulnerabilities

Page 7 of 14
CVE-2004-0081P4MEDIUMCVSS 5.0v8.05v11.00+2 more2004-11-23
CVE-2004-0081 [MEDIUM] CVE-2004-0081: OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote atta OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.
nvd
CVE-1999-0138P4HIGHCVSS 7.2v8v9+1 more1996-06-26
CVE-1999-0138 [HIGH] CVE-1999-0138: The suidperl and sperl program do not give up root privileges when changing UIDs back to the origina The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access.
nvd
CVE-1999-0336P4HIGHCVSS 7.2v101996-11-01
CVE-1999-0336 [HIGH] CVE-1999-0336: Buffer overflow in mstm in HP-UX allows local users to gain root access. Buffer overflow in mstm in HP-UX allows local users to gain root access.
nvd
CVE-2003-0061P4HIGHCVSS 7.2v10.202002-01-11
CVE-2003-0061 [HIGH] CVE-2003-0061: Buffer overflow in passwd for HP UX B.10.20 allows local users to execute arbitrary commands with ro Buffer overflow in passwd for HP UX B.10.20 allows local users to execute arbitrary commands with root privileges via a long LANG environment variable.
nvd
CVE-1999-0962P4HIGHCVSS 7.2v9v101997-05-14
CVE-1999-0962 [HIGH] CVE-1999-0962: Buffer overflow in HPUX passwd command allows local users to gain root privileges via a command line Buffer overflow in HPUX passwd command allows local users to gain root privileges via a command line option.
nvd
CVE-2006-2574P4HIGHCVSS 7.2v11.00v11.4+2 more2006-05-24
CVE-2006-2574 [HIGH] CVE-2006-2574: Multiple unspecified vulnerabilities in Software Distributor in HP-UX B.11.00, B.11.04, B.11.11, and Multiple unspecified vulnerabilities in Software Distributor in HP-UX B.11.00, B.11.04, B.11.11, and B.11.23 allow local users to gain privileges via unspecified attack vectors.
nvd
CVE-2006-0436P4HIGHCVSS 7.2v11.00v11.4+1 more2006-01-26
CVE-2006-0436 [HIGH] CVE-2006-0436: Unspecified vulnerability in HP HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain privi Unspecified vulnerability in HP HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain privileges via unknown attack vectors.
nvd
CVE-2001-1181P4HIGHCVSS 7.2v11.112001-07-16
CVE-2001-1181 [HIGH] CVE-2001-1181: Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.
nvd
CVE-2004-0965P4HIGHCVSS 7.2v11.00v11.11+2 more2005-02-09
CVE-2004-0965 [HIGH] CVE-2004-0965: stmkfont in HP-UX B.11.00 through B.11.23 relies on the user-specified PATH when executing certain c stmkfont in HP-UX B.11.00 through B.11.23 relies on the user-specified PATH when executing certain commands, which allows local users to execute arbitrary code by modifying the PATH environment variable to point to malicious programs.
nvd
CVE-1999-0318P4HIGHCVSS 7.2v111997-03-01
CVE-1999-0318 [HIGH] CVE-1999-0318: Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable. Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.
nvd
CVE-1999-0307P4HIGHCVSS 7.2v9.00v10.002000-12-20
CVE-1999-0307 [HIGH] CVE-1999-0307: Buffer overflow in HP-UX cstm program allows local users to gain root privileges. Buffer overflow in HP-UX cstm program allows local users to gain root privileges.
nvd
CVE-2001-1182P4HIGHCVSS 7.2v10.20v11.00+1 more2001-07-17
CVE-2001-1182 [HIGH] CVE-2001-1182: Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass cert Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass certain security checks and gain privileges.
nvd
CVE-1999-1161P4HIGHCVSS 7.2≤ 10v91996-11-03
CVE-1999-1161 [HIGH] CVE-1999-1161: Vulnerability in ppl in HP-UX 10.x and earlier allows local users to gain root privileges by forcing Vulnerability in ppl in HP-UX 10.x and earlier allows local users to gain root privileges by forcing ppl to core dump.
nvd
CVE-2004-1328P4HIGHCVSS 7.2v11.00v11.4+1 more2004-12-31
CVE-2004-1328 [HIGH] CVE-2004-1328: Unknown vulnerability in newgrp in HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain el Unknown vulnerability in newgrp in HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain elevated privileges.
nvd
CVE-2005-3779P4HIGHCVSS 7.2v11.00v11.11+1 more2005-11-23
CVE-2005-3779 [HIGH] CVE-2005-3779: Unspecified vulnerability in xterm for HP-UX 11.00, 11.11, and 11.23 allows local users to gain priv Unspecified vulnerability in xterm for HP-UX 11.00, 11.11, and 11.23 allows local users to gain privileges via unknown vectors.
nvd
CVE-1999-1139P4HIGHCVSS 7.2≤ 11.001997-09-01
CVE-1999-1139 [HIGH] CVE-1999-1139: Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the IOERROR.mytty file.
nvd
CVE-2007-5946P4HIGHCVSS 7.2v11.23v11.312007-11-14
CVE-2007-5946 [HIGH] CVE-2007-5946: Unspecified vulnerability in the Aries PA-RISC emulator on HP-UX B.11.23 and B.11.31 on the IA-64 pl Unspecified vulnerability in the Aries PA-RISC emulator on HP-UX B.11.23 and B.11.31 on the IA-64 platform allows local users to obtain unspecified access.
nvd
CVE-2006-1689P4HIGHCVSS 7.2v11.112006-04-11
CVE-2006-1689 [HIGH] CVE-2006-1689: Unspecified vulnerability in su in HP HP-UX B.11.11, when using the LDAP netgroup feature, allows lo Unspecified vulnerability in su in HP HP-UX B.11.11, when using the LDAP netgroup feature, allows local users to gain unspecified access.
nvd
CVE-2004-2693P4HIGHCVSS 7.2v11.00v11.04+1 more2004-12-31
CVE-2004-2693 [HIGH] CWE-264 CVE-2004-2693: HP-UX B.11.00 and B.11.11 with B6848AB GTK+ Support Libraries installed uses insecure directory perm HP-UX B.11.00 and B.11.11 with B6848AB GTK+ Support Libraries installed uses insecure directory permissions, which allows local users to gain privileges via files in /opt/gnome/src/GLib/.
nvd
CVE-2008-1660P4MEDIUMCVSS 6.3v11.11v11.23+1 more2008-05-21
CVE-2008-1660 [MEDIUM] CVE-2008-1660: Unspecified vulnerability in useradd on HP-UX B.11.11, B.11.23, and B.11.31 allows local users to ac Unspecified vulnerability in useradd on HP-UX B.11.11, B.11.23, and B.11.31 allows local users to access arbitrary files and directories via unspecified vectors.
nvd
Hp Hp-Ux vulnerabilities | cvebase