Vulnerabilities > CVE-2011-4159 - Unspecified vulnerability in HP Event Monitoring Service A.04.20.11.04

047910
CVSS 6.8 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
SINGLE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
hp

Summary

Unspecified vulnerability in System Administration Manager (SAM) in EMS before A.04.20.11.04_01 on HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to gain privileges via unknown vectors.

Vulnerable Configurations

Part Description Count
Application
Hp
2
OS
Hp
3

Oval

accepted2015-04-20T04:00:37.995-04:00
classvulnerability
contributors
  • nameYamini Mohan R
    organizationHewlett-Packard
  • nameSushant Kumar Singh
    organizationHewlett-Packard
  • nameSushant Kumar Singh
    organizationHewlett-Packard
  • namePrashant Kumar
    organizationHewlett-Packard
  • nameMike Cokus
    organizationThe MITRE Corporation
descriptionUnspecified vulnerability in System Administration Manager (SAM) in EMS before A.04.20.11.04_01 on HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to gain privileges via unknown vectors.
familyunix
idoval:org.mitre.oval:def:14353
statusaccepted
submitted2012-01-30T11:43:07.000-05:00
titleHP-UX Running System Administration Manager (SAM), Local Increase in Privilege
version48

Seebug

bulletinFamilyexploit
descriptionBugtraq ID: 50704 CVE ID:CVE-2011-4159 HP-UX是一款商业性质的操作系统。 HP-UX系统管理器(SAM)存在未明错误,本地攻击者可以利用漏洞提升特权。 HP HP-UX B.11.31 HP HP-UX B.11.23 HP HP-UX B.11.11 厂商解决方案 用户可参考如下供应商提供的安全公告获得补丁信息: http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03089106
idSSV:23219
last seen2017-11-19
modified2011-11-18
published2011-11-18
reporterRoot
titleHP-UX系统管理器本地特权提升漏洞