Page 12 of 218 results (0.006 seconds)

CVSS: 7.5EPSS: 1%CPEs: 3EXPL: 0

01 Oct 2001 — rpcbind in HP-UX 11.00, 11.04 and 11.11 allows remote attackers to cause a denial of service (core dump) via a malformed RPC portmap requests, possibly related to a buffer overflow. • http://www.ciac.org/ciac/bulletins/m-003.shtml •

CVSS: 9.8EPSS: 3%CPEs: 5EXPL: 0

20 Sep 2001 — Buffer overflow in line printer daemon (rlpdaemon) in HP-UX 10.01 through 11.11 allows remote attackers to execute arbitrary commands. • http://archives.neohapsis.com/archives/hp/2001-q3/0047.html •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Sep 2001 — login in HP-UX 10.26 does not record failed login attempts in /var/adm/btmp, which could allow attackers to conduct brute force password guessing attacks without being detected or observed using the lastb program. • http://archives.neohapsis.com/archives/hp/2001-q3/0052.html •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 4

03 Sep 2001 — Buffer overflow in swverify in HP-UX 11.0, and possibly other programs, allows local users to gain privileges via a long command line argument. • https://www.exploit-db.com/exploits/482 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

27 Jul 2001 — asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure program, a different vulnerability than CVE-2000-0083. • http://archives.neohapsis.com/archives/hp/2001-q1/0080.html •

CVSS: 9.8EPSS: 0%CPEs: 3EXPL: 0

17 Jul 2001 — Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass certain security checks and gain privileges. • http://archives.neohapsis.com/archives/hp/2001-q3/0014.html •

CVSS: 7.5EPSS: 0%CPEs: 29EXPL: 2

07 Jul 2001 — Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process. • https://www.exploit-db.com/exploits/20997 •

CVSS: 5.5EPSS: 0%CPEs: 4EXPL: 0

27 Jun 2001 — pcltotiff in HP-UX 10.x has unnecessary set group id permissions, which allows local users to cause a denial of service. • http://www.osvdb.org/2188 •

CVSS: 5.5EPSS: 0%CPEs: 3EXPL: 0

11 Jun 2001 — kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files. • http://ciac.llnl.gov/ciac/bulletins/l-093.shtml •

CVSS: 10.0EPSS: 1%CPEs: 4EXPL: 1

24 May 2001 — Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generate long strings. • http://www.cert.org/advisories/CA-2001-07.html • CWE-131: Incorrect Calculation of Buffer Size •