Search: "hp"

2532 CVEs found

CVE-1999-0829
5.0 MEDIUM

HP Secure Web Console uses weak encryption.

Published: 1999-11-01
Products: 1
Vendors:
hp

Vulnerability in HP Series 800 S/X/V Class servers allows remote attackers to gain access to the S/X/V Class console via the Service Support Processor (SSP) Teststation.

Published: 1999-11-24
Products: 1
Vendors:
hp
CVE-1999-1573
10.0 HIGH

Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain pr...

Published: 1999-12-28
Products: 6
Vendors:
hp

SystemSoft SystemWizard package in HP Pavilion PC with Windows 98, and possibly other platforms and operating systems, installs two ActiveX controls that are marked as safe for scripting, which allows...

Published: 1999-12-31
Products: 1
Vendors:
systemsoft

The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.

Published: 2000-01-02
Products: 2
Vendors:
hp

The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.

Published: 2000-01-02
Products: 2
Vendors:
hp
CVE-1999-0992
10.0 HIGH

HP VirtualVault with the PHSS_17692 patch allows unprivileged processes to bypass access restrictions via the Trusted Gateway Proxy (TGP).

Published: 2000-01-18
Products: 1
Vendors:
hp
CVE-2000-0095
5.0 MEDIUM

The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of traffic in response to small packets, allowing remote attackers to cause the syste...

Published: 2000-01-24
Products: 2
Vendors:
hp

HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.

Published: 2000-02-17
Products: 1
Vendors:
hp
CVE-2000-0179
5.0 MEDIUM

HP OpenView OmniBack 2.55 allows remote attackers to cause a denial of service via a large number of connections to port 5555.

Published: 2000-02-28
Products: 3
Vendors:
hp
CVE-2000-0251
5.0 MEDIUM

HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses.

Published: 2000-04-06
Products: 2
Vendors:
hp
CVE-2000-0083
4.6 MEDIUM

HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local users to cause a denial of service or gain additional privileges.

Published: 2000-04-18
Products: 2
Vendors:
hp
CVE-2000-0414
4.6 MEDIUM

Vulnerability in shutdown command for HP-UX 11.X and 10.X allows allows local users to gain privileges via malformed input variables.

Published: 2000-05-04
Products: 5
Vendors:
hp

The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.

Published: 2000-05-24
Products: 1
Vendors:
hp
CVE-2000-0444
5.0 MEDIUM

HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.

Published: 2000-05-24
Products: 1
Vendors:
hp
CVE-2000-0468
4.6 MEDIUM

man in HP-UX 10.20 and 11 allows local attackers to overwrite files via a symlink attack.

Published: 2000-06-02
Products: 2
Vendors:
hp
CVE-2000-0558
10.0 HIGH

Buffer overflow in HP Openview Network Node Manager 6.1 allows remote attackers to execute arbitrary commands via the Alarm service (OVALARMSRV) on port 2345.

Published: 2000-06-06
Products: 1
Vendors:
hp
CVE-2000-0515
10.0 HIGH

The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges.

Published: 2000-06-07
Products: 2
Vendors:
hp
CVE-2000-0616
4.6 MEDIUM

Vulnerability in HP TurboIMAGE DBUTIL allows local users to gain additional privileges via DBUTIL.PUB.SYS.

Published: 2000-06-26
Products: 5
Vendors:
hp
CVE-2000-0636
5.0 MEDIUM

HP JetDirect printers versions G.08.20 and H.08.20 and earlier allow remote attackers to cause a denial of service via a malformed FTP quote command.

Published: 2000-07-19
Products: 10
Vendors:
hp