Vulnerabilities
Vulnerable Software
Hp:  >> Hp-Ux  Security Vulnerabilities
HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
CVSS Score
7.5
EPSS Score
0.02
Published
2000-02-17
The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of traffic in response to small packets, allowing remote attackers to cause the system to be used as a packet amplifier.
CVSS Score
5.0
EPSS Score
0.023
Published
2000-01-24
The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.
CVSS Score
7.2
EPSS Score
0.01
Published
2000-01-02
The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.
CVSS Score
7.2
EPSS Score
0.005
Published
2000-01-02
Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files.
CVSS Score
10.0
EPSS Score
0.051
Published
1999-12-28
Buffer overflows in HP Software Distributor (SD) for HPUX 10.x and 11.x.
CVSS Score
4.6
EPSS Score
0.005
Published
1999-07-01
HP CDE program includes the current directory in root's PATH variable.
CVSS Score
7.2
EPSS Score
0.005
Published
1999-07-01
Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd).
CVSS Score
10.0
EPSS Score
0.122
Published
1999-07-01
The default FTP configuration in HP Visualize Conference allows conference users to send a file to other participants without authorization.
CVSS Score
7.5
EPSS Score
0.021
Published
1999-07-01
Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL.
CVSS Score
5.0
EPSS Score
0.018
Published
1999-05-07


Contact Us

Shodan ® - All rights reserved