Vulnerabilities (CVE)

Filtered by vendor Hp Subscribe
Filtered by product Hp-ux
Total 478 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0132 2 Hp, Sun 3 Hp-ux, Solaris, Sunos 2025-04-03 2.1 LOW N/A
Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root access.
CVE-1999-0707 1 Hp 2 Hp-ux, Visualize Conference Ftp 2025-04-03 7.5 HIGH N/A
The default FTP configuration in HP Visualize Conference allows conference users to send a file to other participants without authorization.
CVE-2004-1328 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Unknown vulnerability in newgrp in HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain elevated privileges.
CVE-1999-0022 6 Bsdi, Freebsd, Hp and 3 more 7 Bsd Os, Freebsd, Hp-ux and 4 more 2025-04-03 7.2 HIGH 7.8 HIGH
Local user gains root privileges via buffer overflow in rdist, via expstr() function.
CVE-2001-1182 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass certain security checks and gain privileges.
CVE-1999-1136 1 Hp 2 Hp-ux, Mpe Ix 2025-04-03 4.6 MEDIUM N/A
Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Response Center Predictive systems.
CVE-2000-1031 1 Hp 2 Hp-ux, Tru64 2025-04-03 4.6 MEDIUM N/A
Buffer overflow in dtterm in HP-UX 11.0 and HP Tru64 UNIX 4.0f through 5.1a allows local users to execute arbitrary code via a long -tn option.
CVE-1999-0513 7 Digital, Freebsd, Hp and 4 more 8 Unix, Freebsd, Hp-ux and 5 more 2025-04-03 5.0 MEDIUM N/A
ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
CVE-2003-1374 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
Buffer overflow in disable of HP-UX 11.0 may allow local users to execute arbitrary code via a long argument to the (1) -r or (2)-c options.
CVE-2001-0248 2 Hp, Sgi 2 Hp-ux, Irix 2025-04-03 10.0 HIGH 9.8 CRITICAL
Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generate long strings.
CVE-2002-1606 1 Hp 2 Hp-ux, Tru64 2025-04-03 4.6 MEDIUM N/A
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain privileges via (1) lpc, (2) lpd, (3) lpq, (4) lpr, or (5) lprm.
CVE-1999-0961 1 Hp 1 Hp-ux 2025-04-03 6.2 MEDIUM N/A
HPUX sysdiag allows local users to gain root privileges via a symlink attack during log file creation.
CVE-1999-0690 2 Cde, Hp 2 Cde, Hp-ux 2025-04-03 7.2 HIGH N/A
HP CDE program includes the current directory in root's PATH variable.
CVE-1999-1308 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
Certain programs in HP-UX 10.20 do not properly handle large user IDs (UID) or group IDs (GID) over 60000, which could allow local users to gain privileges.
CVE-2000-0573 1 Hp 1 Hp-ux 2025-04-03 10.0 HIGH N/A
The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to execute arbitrary commands via the SITE EXEC command.
CVE-2002-1604 1 Hp 2 Hp-ux, Tru64 2025-04-03 7.5 HIGH N/A
Multiple buffer overflows in HP Tru64 UNIX allow local and possibly remote attackers to execute arbitrary code via a long NLSPATH environment variable to (1) csh, (2) dtsession, (3) dxsysinfo, (4) imapd, (5) inc, (6) uucp, (7) uux, (8) rdist, or (9) deliver.
CVE-2002-2262 1 Hp 1 Hp-ux 2025-04-03 5.0 MEDIUM N/A
Unspecified vulnerability in xntpd of HP-UX 10.20 through 11.11 allows remote attackers to cause a denial of service (hang) via unknown attack vectors.
CVE-2002-0678 7 Caldera, Compaq, Hp and 4 more 9 Openunix, Unixware, Tru64 and 6 more 2025-04-03 7.2 HIGH N/A
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
CVE-1999-0016 6 Cisco, Gnu, Hp and 3 more 8 Ios, Inet, Hp-ux and 5 more 2025-04-03 5.0 MEDIUM N/A
Land IP denial of service.
CVE-1999-0057 5 Eric Allman, Freebsd, Hp and 2 more 7 Vacation, Freebsd, Hp-ux and 4 more 2025-04-03 7.5 HIGH N/A
Vacation program allows command execution by remote users through a sendmail command.