CVE-2007-1727
https://notcve.org/view.php?id=CVE-2007-1727
Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 6.20, 6.4x, 7.01, 7.50, and 7.51 allows remote authenticated users to access certain privileged "facilities" via unspecified vectors. Vulnerabilidad sin especificar en el HP OpenView Network Node Manager (OV NNM) 6.20, 6.4x, 7.01, 7.50 y 7.51 permite a usuarios remotos autenticados acceder a ciertos privilegios facilitados mediante vectores sin especificar. • http://secunia.com/advisories/24746 http://www.securityfocus.com/bid/23163 http://www.securitytracker.com/id?1017817 http://www.vupen.com/english/advisories/2007/1121 http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00854999 https://exchange.xforce.ibmcloud.com/vulnerabilities/33241 •
CVE-2007-0915
https://notcve.org/view.php?id=CVE-2007-0915
Distributed SLS daemon (SLSd) on HP-UX B.11.11 allows remote attackers to overwrite arbitrary files and gain privileges via a crafted RPC request. El demonio SLS distribuido (SLSd) en HP-UX B.11.11 permite a atacantes remotos sobrescribir ficheros y obtener privilegios mediante peticiones RPC. • http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=474 http://osvdb.org/33186 http://secunia.com/advisories/24169 http://www.securityfocus.com/bid/22551 http://www.securitytracker.com/id?1017630 http://www.vupen.com/english/advisories/2007/0590 http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00862809 https://exchange.xforce.ibmcloud.com/vulnerabilities/32471 •
CVE-2007-0916
https://notcve.org/view.php?id=CVE-2007-0916
Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport functionality in HP-UX B.11.11 and B.11.23 allows local users to cause an unspecified denial of service via unknown vectors. Una vulnerabilidad no especificada en la funcionalidad de transporte del Address and Routing Parameter Area (ARPA) en HP-UX versiones B.11.11 y B.11.23, permite a usuarios locales causar una denegación de servicio no especificada por medio de vectores desconocidos. • http://osvdb.org/33198 http://secunia.com/advisories/24173 http://www.securityfocus.com/bid/22546 http://www.securitytracker.com/id?1017629 http://www.vupen.com/english/advisories/2007/0596 http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00863839 https://exchange.xforce.ibmcloud.com/vulnerabilities/32468 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5239 •
CVE-2007-0394
https://notcve.org/view.php?id=CVE-2007-0394
HP HP-UX B11.11 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572. HP HP-UX B11.1 no verifica adecuadamenet el estado del descriptor de fichero antes de la ejecución setuid, lo cual permite a un usuario local obtener privilegios a través del cierre del descriptor de fichero 0,1 o 2 y por tanto invocando un programa setuid, una variante de CVE-2002-0572. • http://www.securityfocus.com/archive/1/457279/100/0/threaded http://www.securityfocus.com/archive/1/457315/100/0/threaded •
CVE-2006-5556 – HP-UX 11i - 'LIBC TZ' Enviroment Variable Privilege Escalation
https://notcve.org/view.php?id=CVE-2006-5556
Buffer overflow in the localtime_r function, and certain other functions, in libc in HP-UX B.11.11 and possibly other versions allows local users to execute arbitrary code via a long TZ environment variable. Desbordamiento de búfer en la función localtime_r y otras ciertas funciones, en libc en HP-UX B.11.11 y posiblemente otras versiones permiten usuarios locales ejecutar código de su elección a través de una variable de entorno TZ. • https://www.exploit-db.com/exploits/2636 http://blogs.23.nu/prdelka/stories/13144 http://www.securityfocus.com/bid/20718 https://exchange.xforce.ibmcloud.com/vulnerabilities/29777 •