Hp Operations Agent vulnerabilities

10 known vulnerabilities affecting hp/operations_agent.

Total CVEs
10
CISA KEV
0
Public exploits
4
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH2MEDIUM4LOW1

Vulnerabilities

Page 1 of 1
CVE-2017-3733HIGHCVSS 7.5v11.14v11.152017-05-04
CVE-2017-3733 [HIGH] CWE-20 CVE-2017-3733: During a renegotiation handshake if the Encrypt-Then-Mac extension is negotiated where it was not in During a renegotiation handshake if the Encrypt-Then-Mac extension is negotiated where it was not in the original handshake (or vice-versa) then this can cause OpenSSL 1.1.0 before 1.1.0e to crash (dependent on ciphersuite). Both clients and servers are affected.
nvd
CVE-2014-2647MEDIUMCVSS 4.3PoC≤ 11.132014-10-19
CVE-2014-2647 [MEDIUM] CWE-79 CVE-2014-2647: Cross-site scripting (XSS) vulnerability in HP Operations Agent in HP Operations Manager (formerly O Cross-site scripting (XSS) vulnerability in HP Operations Agent in HP Operations Manager (formerly OpenView Communications Broker) before 11.14 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd
CVE-2014-2630MEDIUMCVSS 4.4PoCv11.02014-08-12
CVE-2014-2630 [MEDIUM] CVE-2014-2630: Unspecified vulnerability in HP Operations Agent 11.00, when Glance is used, allows local users to g Unspecified vulnerability in HP Operations Agent 11.00, when Glance is used, allows local users to gain privileges via unknown vectors.
nvd
CVE-2012-2020CRITICALCVSS 10.0PoC≤ 11.0v7.36+11 more2012-07-11
CVE-2012-2020 [CRITICAL] CVE-2012-2020: Unspecified vulnerability in HP Operations Agent before 11.03.12 allows remote attackers to execute Unspecified vulnerability in HP Operations Agent before 11.03.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1326.
nvd
CVE-2012-2019CRITICALCVSS 10.0PoC≤ 11.0v7.36+11 more2012-07-11
CVE-2012-2019 [CRITICAL] CVE-2012-2019: Unspecified vulnerability in HP Operations Agent before 11.03.12 allows remote attackers to execute Unspecified vulnerability in HP Operations Agent before 11.03.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1325.
nvd
CVE-2011-4160LOWCVSS 3.2v11.02011-11-24
CVE-2011-4160 [LOW] CVE-2011-4160: Unspecified vulnerability in HP Operations Agent 11.00 and Performance Agent 4.73 and 5.0 on AIX, HP Unspecified vulnerability in HP Operations Agent 11.00 and Performance Agent 4.73 and 5.0 on AIX, HP-UX, Linux, and Solaris allows local users to bypass intended directory-access restrictions via unknown vectors.
nvd
CVE-2011-2608MEDIUMCVSS 6.4v8.53v8.60.005+5 more2011-07-01
CVE-2011-2608 [MEDIUM] CWE-20 CVE-2011-2608: ovbbccb.exe 6.20.50.0 and other versions in HP OpenView Performance Agent 4.70 and 5.0; and Operatio ovbbccb.exe 6.20.50.0 and other versions in HP OpenView Performance Agent 4.70 and 5.0; and Operations Agent 11.0, 8.60.005, 8.60.006, 8.60.007, 8.60.008, 8.60.501, and 8.53; allows remote attackers to delete arbitrary files via a full pathname in the File field in a Register command.
nvd
CVE-2010-3004HIGHCVSS 7.5v7.36v8.602010-09-08
CVE-2010-3004 [HIGH] CVE-2010-3004: Unspecified vulnerability in HP Operations Agent 7.36 and 8.6 on Windows allows remote attackers to Unspecified vulnerability in HP Operations Agent 7.36 and 8.6 on Windows allows remote attackers to execute arbitrary code via unknown vectors.
nvd
CVE-2010-3005MEDIUMCVSS 6.8v7.36v8.602010-09-08
CVE-2010-3005 [MEDIUM] CVE-2010-3005: Unspecified vulnerability in HP Operations Agent 7.36 and 8.6 on Windows allows local users to gain Unspecified vulnerability in HP Operations Agent 7.36 and 8.6 on Windows allows local users to gain privileges via unknown vectors.
nvd
CVE-2010-0444CRITICALCVSS 10.0v8.51v8.52+1 more2010-02-09
CVE-2010-0444 [CRITICAL] CWE-255 CVE-2010-0444: HP Operations Agent 8.51, 8.52, 8.53, and 8.60 on Solaris 10 uses a blank password for the opc_op ac HP Operations Agent 8.51, 8.52, 8.53, and 8.60 on Solaris 10 uses a blank password for the opc_op account, which allows remote attackers to execute arbitrary code via unspecified vectors.
nvd