Page 14 of 169 results (0.016 seconds)

CVSS: 5.5EPSS: 1%CPEs: 1EXPL: 3

19 Dec 2000 — HP-UX 11.00 crontab allows local users to read arbitrary files via the -e option by creating a symlink to the target file during the crontab session, quitting the session, and reading the error messages that crontab generates. • https://www.exploit-db.com/exploits/195 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 10.0EPSS: 0%CPEs: 6EXPL: 0

19 Dec 2000 — Vulnerability in auto_parms and set_parms in HP-UX 11.00 and earlier allows remote attackers to execute arbitrary commands or cause a denial of service. • http://www.securityfocus.com/advisories/2850 •

CVSS: 7.8EPSS: 0%CPEs: 12EXPL: 0

11 Dec 2000 — Buffer overflow in dtterm in HP-UX 11.0 and HP Tru64 UNIX 4.0f through 5.1a allows local users to execute arbitrary code via a long -tn option. • http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html •

CVSS: 7.8EPSS: 0%CPEs: 11EXPL: 4

29 Nov 2000 — Buffer overflow in cu program in HP-UX 11.0 may allow local users to gain privileges via a long -l command line argument. • https://www.exploit-db.com/exploits/20373 •

CVSS: 10.0EPSS: 4%CPEs: 2EXPL: 1

20 Oct 2000 — Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via format strings in the PASS command. • https://www.exploit-db.com/exploits/212 •

CVSS: 7.2EPSS: 0%CPEs: 1EXPL: 3

20 Oct 2000 — The net.init rc script in HP-UX 11.00 (S008net.init) allows local users to overwrite arbitrary files via a symlink attack that points from /tmp/stcp.conf to the targeted file. • https://www.exploit-db.com/exploits/20162 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

13 Oct 2000 — Vulnerability in newgrp command in HP-UX 11.0 allows local users to gain privileges. • http://archives.neohapsis.com/archives/bugtraq/2000-08/0144.html •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

21 Sep 2000 — Buffer overflow in bdf program in HP-UX 11.00 may allow local users to gain root privileges via a long -t option. • http://archives.neohapsis.com/archives/bugtraq/2000-07/0388.html •

CVSS: 10.0EPSS: 91%CPEs: 1EXPL: 7

07 Jul 2000 — The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to execute arbitrary commands via the SITE EXEC command. • https://www.exploit-db.com/exploits/16311 •

CVSS: 10.0EPSS: 1%CPEs: 2EXPL: 1

07 Jun 2000 — The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges. • https://www.exploit-db.com/exploits/20002 •