Skip to main content

Vendor archive

hp CVEs

Beta · best-effort

2,439 CVEs tagged to vendor hp584 Critical, 852 High, 902 Medium, 101 Low, 0 Unrated.

CVE-2004-0525

Published Aug 6, 2004

HP Integrated Lights-Out (iLO) 1.10 and other versions before 1.55 allows remote attackers to cause a denial of service (hang) by accessing iLO using the TCP/IP reserved port zero.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0657

Published Aug 6, 2004

Integer overflow in the NTP daemon (NTPd) before 4.0 causes the NTP server to return the wrong date/time offset when a client requests a date/time that is more than 34 years away…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0716

Published Aug 6, 2004

Buffer overflow in the DCE daemon (DCED) for the DCE endpoint mapper (epmap) on HP-UX 11 allows remote attackers to execute arbitrary code via a request with a small fragment leng…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-0709

Published Jul 27, 2004

HP OpenView Select Access 5.0 through 6.0 does not correctly decode UTF-8 encoded unicode characters in a URL, which could allow remote attackers to bypass access restrictions.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-1856

Published Mar 24, 2004

devices_update_printer_fw_upload.hts in HP Web JetAdmin 7.5.2546, when no password is set, allows remote attackers to upload arbitrary files to the printer directory.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-1857

Published Mar 24, 2004

Directory traversal vulnerability in setinfo.hts in HP Web Jetadmin 7.5.2546 allows remote authenticated attackers to read arbitrary files via a .. (dot dot) in the setinclude par…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1082

Published Feb 3, 2004

mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials.

CVSS 7.5 · High

CVE-2004-1764

Published Jan 14, 2004

Buffer overflow in CDE libDtSvc on HP-UX B.11.00, B.11.04, B.11.11, and B.11.22 allows local users to gain root privileges via unknown vectors.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1087

Published Dec 31, 2003

Unknown vulnerability in diagmond and possibly other applications in HP9000 Series 700/800 running HP-UX B.11.00, B.11.04, B.11.11, and B.11.22 allows remote attackers to cause a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1097

Published Dec 31, 2003

Buffer overflow in rexec on HP-UX B.10.20, B.11.00, and B.11.04, when setuid root, may allow local users to gain privileges via a long -l option.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1098

Published Dec 31, 2003

The Xserver for HP-UX 11.22 was not properly built, which introduced a vulnerability that allows local users to gain privileges.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1099

Published Dec 31, 2003

shar on HP-UX B.11.00, B.11.04, and B.11.11 creates temporary files with predictable names in /tmp, which allows local users to cause a denial of service and possibly execute arbi…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2003-1356

Published Dec 31, 2003

The "file handling" in sort in HP-UX 10.01 through 10.20, and 11.00 through 11.11 is "incorrect," which allows attackers to gain access or cause a denial of service via unknown ve…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1358

Published Dec 31, 2003

rs.F300 for HP-UX 10.0 through 11.22 uses the PATH environment variable to find and execute programs such as rm while operating at raised privileges, which allows local users to g…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1360

Published Dec 31, 2003

Buffer overflow in the setupterm function of (1) lanadmin and (2) landiag programs of HP-UX 10.0 through 10.34 allows local users to execute arbitrary code via a long TERM environ…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1362

Published Dec 31, 2003

Bastille B.02.00.00 of HP-UX 11.00 and 11.11 does not properly configure the (1) NOVRFY and (2) NOEXPN options in the sendmail.cf file, which could allow remote attackers to verif…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1374

Published Dec 31, 2003

Buffer overflow in disable of HP-UX 11.0 may allow local users to execute arbitrary code via a long argument to the (1) -r or (2)-c options.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1375

Published Dec 31, 2003

Buffer overflow in wall for HP-UX 10.20 through 11.11 may allow local users to execute arbitrary code by calling wall with a large file as an argument.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1461

Published Dec 31, 2003

Buffer overflow in rwrite for HP-UX 11.0 could allow local users to execute arbitrary code via a long argument. NOTE: the vendor was unable to reproduce the problem on a system t…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1493

Published Dec 31, 2003

Memory leak in HP OpenView Network Node Manager (NNM) 6.2 and 6.4 allows remote attackers to cause a denial of service (memory exhaustion) via crafted TCP packets.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 2,226-2,250 of 2,439 CVEsPage 90 of 98