Page 4 of 115 results (0.011 seconds)

CVSS: 8.8EPSS: 0%CPEs: 5EXPL: 0

24 Feb 2005 — Unknown vulnerability in ftpd on HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23 allows remote authenticated users to gain "unauthorized access to files." • http://marc.info/?l=bugtraq&m=110927245211549&w=2 •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

10 Feb 2005 — Unknown vulnerability in BIND 9.2.0 in HP-UX B.11.00, B.11.11, and B.11.23 allows remote attackers to cause a denial of service. • http://marc.info/?l=bugtraq&m=110805105200470&w=2 •

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 0

31 Dec 2004 — Unknown vulnerability in newgrp in HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain elevated privileges. • http://marc.info/?l=bugtraq&m=110355911415320&w=2 •

CVSS: 5.5EPSS: 0%CPEs: 3EXPL: 0

31 Dec 2004 — Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport software in HP-UX B.11.00, B.11.04, and B.11.11 before 20040628 allows local users to cause a denial of service via unspecified vectors. • http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=PSD_HPSBUX01054 •

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 0

31 Dec 2004 — HP-UX B.11.00 and B.11.11 with B6848AB GTK+ Support Libraries installed uses insecure directory permissions, which allows local users to gain privileges via files in /opt/gnome/src/GLib/. • http://marc.info/?l=bugtraq&m=108455531606056&w=2 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 9.1EPSS: 1%CPEs: 4EXPL: 0

31 Dec 2004 — HP-UX B.11.00 through B.11.23, when running Ignite-UX and using the add_new_client command, causes the TFTP server to set world-writable permissions on part of the directory tree, which allows remote attackers to modify data or cause disk consumption. • http://marc.info/?l=bugtraq&m=112420609211136&w=2 •

CVSS: 9.8EPSS: 7%CPEs: 15EXPL: 0

31 Dec 2004 — Stack-based buffer overflow in the FTP daemon in HP-UX 11.11i, with the -v (debug) option enabled, allows remote attackers to execute arbitrary code via a long command request. • http://marc.info/?l=bugtraq&m=110797179710695&w=2 •

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 0

31 Dec 2004 — Unspecified vulnerability in SharedX in HP-UX B.11.00, B.11.11, and B.11.22 allows local users to access unspecified files or cause a denial of service via unknown vectors related to handling of "files in a potentially insecure manner." • http://secunia.com/advisories/10657 •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 0

23 Dec 2004 — Unknown vulnerability in System Administration Manager (SAM) in HP-UX B.11.00, B.11.11, B.11.22, and B.11.23 allows local users to gain privileges. • http://marc.info/?l=bugtraq&m=110384155209555&w=2 •

CVSS: 9.8EPSS: 35%CPEs: 157EXPL: 1

24 Nov 2004 — The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict access between Javascript and Java applets during data transfer, which allows remote attackers to load unsafe classes and execute arbitrary code by using the reflection API to access private Java packages. • https://www.exploit-db.com/exploits/24763 • CWE-264: Permissions, Privileges, and Access Controls •