Vulnerabilities (CVE)

Filtered by vendor Hp Subscribe
Filtered by product Hp-ux
Total 478 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-1134 7 Caldera, Conectiva, Hp and 4 more 9 Openlinux, Openlinux Edesktop, Openlinux Eserver and 6 more 2025-04-03 7.2 HIGH N/A
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
CVE-2001-0488 1 Hp 1 Hp-ux 2025-04-03 2.1 LOW N/A
pcltotiff in HP-UX 10.x has unnecessary set group id permissions, which allows local users to cause a denial of service.
CVE-1999-0707 1 Hp 2 Hp-ux, Visualize Conference Ftp 2025-04-03 7.5 HIGH N/A
The default FTP configuration in HP Visualize Conference allows conference users to send a file to other participants without authorization.
CVE-2000-0702 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
The net.init rc script in HP-UX 11.00 (S008net.init) allows local users to overwrite arbitrary files via a symlink attack that points from /tmp/stcp.conf to the targeted file.
CVE-1999-0078 10 Bsdi, Freebsd, Hp and 7 more 11 Bsd Os, Freebsd, Hp-ux and 8 more 2025-04-03 1.9 LOW N/A
pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call.
CVE-2000-0159 1 Hp 1 Hp-ux 2025-04-03 7.5 HIGH N/A
HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
CVE-1999-1146 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Vulnerability in Glance and gpm programs in GlancePlus for HP-UX 9.x and earlier allows local users to access arbitrary files and gain privileges.
CVE-2005-3295 1 Hp 1 Hp-ux 2025-04-03 2.1 LOW N/A
Unspecified vulnerability in HP-UX B.11.23 on Itanium platforms allows local users to cause a denial of service due to a "specific stack size."
CVE-2001-0266 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Vulnerability in Software Distributor SD-UX in HP-UX 11.0 and earlier allows local users to gain privileges.
CVE-2003-1461 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Buffer overflow in rwrite for HP-UX 11.0 could allow local users to execute arbitrary code via a long argument. NOTE: the vendor was unable to reproduce the problem on a system that had been patched for an lp vulnerability (CVE-2002-1473).
CVE-1999-1251 1 Hp 1 Hp-ux 2025-04-03 2.1 LOW N/A
Vulnerability in direct audio user space code on HP-UX 10.20 and 10.10 allows local users to cause a denial of service.
CVE-2006-1689 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Unspecified vulnerability in su in HP HP-UX B.11.11, when using the LDAP netgroup feature, allows local users to gain unspecified access.
CVE-1999-0326 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
Vulnerability in HP-UX mediainit program.
CVE-2002-0678 7 Caldera, Compaq, Hp and 4 more 9 Openunix, Unixware, Tru64 and 6 more 2025-04-03 7.2 HIGH N/A
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
CVE-1999-0038 7 Bsdi, Data General, Debian and 4 more 8 Bsd Os, Dg Ux, Debian Linux and 5 more 2025-04-03 7.2 HIGH 8.4 HIGH
Buffer overflow in xlock program allows local users to execute commands as root.
CVE-2000-1126 1 Hp 1 Hp-ux 2025-04-03 10.0 HIGH N/A
Vulnerability in auto_parms and set_parms in HP-UX 11.00 and earlier allows remote attackers to execute arbitrary commands or cause a denial of service.
CVE-1999-1161 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Vulnerability in ppl in HP-UX 10.x and earlier allows local users to gain root privileges by forcing ppl to core dump.
CVE-2003-1437 6 Bea, Hp, Ibm and 3 more 8 Weblogic Server, Hp-ux, Aix and 5 more 2025-04-03 2.1 LOW N/A
BEA WebLogic Express and WebLogic Server 7.0 and 7.0.0.1, stores passwords in plaintext when a keystore is used to store a private key or trust certificate authorities, which allows local users to gain access.
CVE-1999-0696 2 Hp, Sun 3 Hp-ux, Solaris, Sunos 2025-04-03 10.0 HIGH N/A
Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd).
CVE-2003-1374 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
Buffer overflow in disable of HP-UX 11.0 may allow local users to execute arbitrary code via a long argument to the (1) -r or (2)-c options.