Vulnerabilities (CVE)

Filtered by vendor Hp Subscribe
Filtered by product Hp-ux
Total 476 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-1182 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass certain security checks and gain privileges.
CVE-2002-0992 1 Hp 1 Hp-ux 2025-04-03 2.1 LOW N/A
Unknown vulnerability in IPV6 functionality for DCE daemons (1) dced or (2) rpcd on HP-UX 11.11 allows attackers to cause a denial of service (crash) via an attack that modifies internal data.
CVE-2000-0005 1 Hp 3 9000, Aserver, Hp-ux 2025-04-03 7.2 HIGH N/A
HP-UX aserver program allows local users to gain privileges via a symlink attack.
CVE-2001-0311 1 Hp 2 Hp-ux, Omniback Ii 2025-04-03 4.6 MEDIUM N/A
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.
CVE-2004-1029 5 Conectiva, Gentoo, Hp and 2 more 8 Linux, Linux, Hp-ux and 5 more 2025-04-03 9.3 HIGH N/A
The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict access between Javascript and Java applets during data transfer, which allows remote attackers to load unsafe classes and execute arbitrary code by using the reflection API to access private Java packages.
CVE-2002-0798 1 Hp 1 Hp-ux 2025-04-03 2.1 LOW N/A
Vulnerability in swinstall for HP-UX 11.00 and 11.11 allows local users to view obtain data views for files that cannot be directly read by the user, which reportedly can be used to cause a denial of service.
CVE-2002-1618 1 Hp 2 Hp-ux, Jfs 2025-04-03 7.2 HIGH N/A
JFS (JFS3.1 and OnlineJFS) in HP-UX 10.20, 11.00, and 11.04 does not properly implement the sticky bit functionality, which could allow attackers to bypass intended restrictions on filesystems.
CVE-2002-1794 1 Hp 2 Hp-ux, Ldap-ux Integration 2025-04-03 10.0 HIGH N/A
Unknown vulnerability in pam_authz in the LDAP-UX Integration product on HP-UX 11.00 and 11.11 allows remote attackers to execute r-commands with privileges of other users.
CVE-2000-0078 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.
CVE-1999-1135 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Vulnerability in VUE 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4994 and PHSS_5438.
CVE-2000-1126 1 Hp 1 Hp-ux 2025-04-03 10.0 HIGH N/A
Vulnerability in auto_parms and set_parms in HP-UX 11.00 and earlier allows remote attackers to execute arbitrary commands or cause a denial of service.
CVE-2003-1358 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
rs.F300 for HP-UX 10.0 through 11.22 uses the PATH environment variable to find and execute programs such as rm while operating at raised privileges, which allows local users to gain privileges by modifying the path to point to a malicious rm program.
CVE-1999-0132 2 Hp, Sun 3 Hp-ux, Solaris, Sunos 2025-04-03 2.1 LOW N/A
Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root access.
CVE-2002-1609 1 Hp 2 Hp-ux, Tru64 2025-04-03 4.6 MEDIUM N/A
Buffer overflow in binmail in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
CVE-2005-3779 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Unspecified vulnerability in xterm for HP-UX 11.00, 11.11, and 11.23 allows local users to gain privileges via unknown vectors.
CVE-2003-0333 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Multiple buffer overflows in kermit in HP-UX 10.20 and 11.00 (C-Kermit 6.0.192 and possibly other versions before 8.0) allow local users to gain privileges via long arguments to (1) ask, (2) askq, (3) define, (4) assign, and (5) getc, some of which may share the same underlying function "doask," a different vulnerability than CVE-2001-0085.
CVE-2003-1360 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Buffer overflow in the setupterm function of (1) lanadmin and (2) landiag programs of HP-UX 10.0 through 10.34 allows local users to execute arbitrary code via a long TERM environment variable.
CVE-2001-1256 1 Hp 1 Hp-ux 2025-04-03 1.2 LOW N/A
kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files.
CVE-1999-0015 4 Hp, Microsoft, Netbsd and 1 more 5 Hp-ux, Windows 95, Windows Nt and 2 more 2025-04-03 5.0 MEDIUM N/A
Teardrop IP denial of service.
CVE-1999-0308 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
HP-UX gwind program allows users to modify arbitrary files.