Show filters
219 Total Results
Displaying 81-90 of 219
Sort by:
Attacker Value
Unknown
CVE-2005-3277
Disclosure Date: October 21, 2005 (last updated February 22, 2025)
The LPD service in HP-UX 10.20 11.11 (11i) and earlier allows remote attackers to execute arbitrary code via shell metacharacters ("`" or single backquote) in a request that is not properly handled when an error occurs, as demonstrated by killing the connection, a different vulnerability than CVE-2002-1473.
0
Attacker Value
Unknown
CVE-2005-2993
Disclosure Date: September 20, 2005 (last updated October 04, 2023)
Unspecified vulnerability in the FTP Daemon (ftpd) for HP Tru64 UNIX 4.0F PK8 and other versions up to HP Tru64 UNIX 5.1B-3, and HP-UX B.11.00, B.11.04, B.11.11, and B.11.23, allows remote authenticated users to cause a denial of service (hang).
0
Attacker Value
Unknown
CVE-2005-1192
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Unknown vulnerability in HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23, when running TCP/IP on IPv4, allows remote attackers to cause a denial of service via certain packets, related to the PMTU, a different vulnerability than CVE-2004-1060.
0
Attacker Value
Unknown
CVE-2004-1029
Disclosure Date: March 01, 2005 (last updated February 22, 2025)
The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict access between Javascript and Java applets during data transfer, which allows remote attackers to load unsafe classes and execute arbitrary code by using the reflection API to access private Java packages.
0
Attacker Value
Unknown
CVE-2005-0547
Disclosure Date: February 24, 2005 (last updated February 22, 2025)
Unknown vulnerability in ftpd on HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23 allows remote authenticated users to gain "unauthorized access to files."
0
Attacker Value
Unknown
CVE-2005-0364
Disclosure Date: February 10, 2005 (last updated February 22, 2025)
Unknown vulnerability in BIND 9.2.0 in HP-UX B.11.00, B.11.11, and B.11.23 allows remote attackers to cause a denial of service.
0
Attacker Value
Unknown
CVE-2004-0965
Disclosure Date: February 09, 2005 (last updated February 22, 2025)
stmkfont in HP-UX B.11.00 through B.11.23 relies on the user-specified PATH when executing certain commands, which allows local users to execute arbitrary code by modifying the PATH environment variable to point to malicious programs.
0
Attacker Value
Unknown
CVE-2004-0940
Disclosure Date: February 09, 2005 (last updated February 22, 2025)
Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.
0
Attacker Value
Unknown
CVE-2004-2693
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
HP-UX B.11.00 and B.11.11 with B6848AB GTK+ Support Libraries installed uses insecure directory permissions, which allows local users to gain privileges via files in /opt/gnome/src/GLib/.
0
Attacker Value
Unknown
CVE-2004-0952
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
HP-UX B.11.00 through B.11.23, when running Ignite-UX and using the add_new_client command, causes the TFTP server to set world-writable permissions on part of the directory tree, which allows remote attackers to modify data or cause disk consumption.
0