Page 36 of 469 results (0.003 seconds)

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Sep 2001 — login in HP-UX 10.26 does not record failed login attempts in /var/adm/btmp, which could allow attackers to conduct brute force password guessing attacks without being detected or observed using the lastb program. • http://archives.neohapsis.com/archives/hp/2001-q3/0052.html •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 4

03 Sep 2001 — Buffer overflow in swverify in HP-UX 11.0, and possibly other programs, allows local users to gain privileges via a long command line argument. • https://www.exploit-db.com/exploits/482 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

27 Jul 2001 — asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure program, a different vulnerability than CVE-2000-0083. • http://archives.neohapsis.com/archives/hp/2001-q1/0080.html •

CVSS: 10.0EPSS: 1%CPEs: 3EXPL: 1

19 Jul 2001 — Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges. • http://ciac.llnl.gov/ciac/bulletins/l-119.shtml •

CVSS: 9.8EPSS: 0%CPEs: 3EXPL: 0

17 Jul 2001 — Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass certain security checks and gain privileges. • http://archives.neohapsis.com/archives/hp/2001-q3/0014.html •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 1

16 Jul 2001 — Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges. • http://archives.neohapsis.com/archives/hp/2001-q3/0013.html •

CVSS: 7.5EPSS: 0%CPEs: 29EXPL: 2

07 Jul 2001 — Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process. • https://www.exploit-db.com/exploits/20997 •

CVSS: 5.5EPSS: 0%CPEs: 4EXPL: 0

27 Jun 2001 — pcltotiff in HP-UX 10.x has unnecessary set group id permissions, which allows local users to cause a denial of service. • http://www.osvdb.org/2188 •

CVSS: 7.1EPSS: 0%CPEs: 1EXPL: 0

18 Jun 2001 — Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights. • http://archives.neohapsis.com/archives/hp/2001-q1/0101.html •

CVSS: 5.5EPSS: 0%CPEs: 3EXPL: 0

11 Jun 2001 — kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files. • http://ciac.llnl.gov/ciac/bulletins/l-093.shtml •