22 results (0.016 seconds)

CVSS: 10.0EPSS: 64%CPEs: 28EXPL: 4

07 Mar 2003 — Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c. Desbordamiento de búfer en Sendmail 5.79 a la 8.12.7 que permite a atacantes remotos la ejecución arbitraria de código mediante ciertos campos de dirección formateados, relativos a comentarios de cabecera de emisor y receptor, procesados por la función crackaddr del fichero heade... • https://www.exploit-db.com/exploits/411 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 0

12 Oct 2001 — Buffer overflows and other vulnerabilities in multiple Common Desktop Environment (CDE) modules in HP-UX 10.10 through 11.11 allow attackers to cause a denial of service and possibly gain additional privileges. • http://archives.neohapsis.com/archives/hp/2001-q2/0044.html •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

27 Jul 2001 — asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure program, a different vulnerability than CVE-2000-0083. • http://archives.neohapsis.com/archives/hp/2001-q1/0080.html •

CVSS: 10.0EPSS: 4%CPEs: 3EXPL: 0

24 May 2001 — Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings. • http://www.cert.org/advisories/CA-2001-07.html • CWE-131: Incorrect Calculation of Buffer Size •

CVSS: 9.8EPSS: 41%CPEs: 2EXPL: 3

07 May 2001 — Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client. • https://www.exploit-db.com/exploits/16291 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

03 May 2001 — Vulnerability in Software Distributor SD-UX in HP-UX 11.0 and earlier allows local users to gain privileges. • http://archives.neohapsis.com/archives/hp/2001-q1/0069.html •

CVSS: 5.5EPSS: 0%CPEs: 3EXPL: 0

26 Mar 2001 — Vulnerability in Support Tools Manager (xstm,cstm,stm) in HP-UX 11.11 and earlier allows local users to cause a denial of service. • http://archives.neohapsis.com/archives/hp/2001-q1/0016.html •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

12 Feb 2001 — Vulnerability in inetd server in HP-UX 11.04 and earlier allows attackers to cause a denial of service when the "swait" state is used by a server. • http://archives.neohapsis.com/archives/hp/2001-q1/0009.html •

CVSS: 7.8EPSS: 0%CPEs: 37EXPL: 0

02 Jan 1999 — HP-UX aserver program allows local users to gain privileges via a symlink attack. • https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5635 •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

30 Jul 1998 — Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Response Center Predictive systems. • http://cert.ip-plus.net/bulletin-archive/msg00040.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •