Vulnerabilities > HP > Instant Support

DATE CVE VULNERABILITY TITLE RISK
2008-06-04 CVE-2008-0953 Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control
The StartApp function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary programs via a .exe filename in the argument, a different vulnerability than CVE-2007-5608 and CVE-2008-0953.
network
low complexity
hp
critical
10.0
2008-06-04 CVE-2008-0952 Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control
The AppendStringToFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to create files with arbitrary content via a full pathname in the first argument and the content in the second argument, a different vulnerability than CVE-2007-5608 and CVE-2008-0953.
network
hp
critical
9.3
2008-06-04 CVE-2007-5610 Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control
The DeleteSingleFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to delete an arbitrary file via a full pathname in the argument.
network
low complexity
hp
critical
10.0
2008-06-04 CVE-2007-5608 Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control
The DownloadFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to force a download of an arbitrary file onto a client machine via a URL in the first argument and a destination filename in the second argument, a different vulnerability than CVE-2008-0952 and CVE-2008-0953.
network
hp
critical
9.3
2008-06-04 CVE-2007-5607 Code Injection vulnerability in HP Instant Support 1.0.0.22
Buffer overflow in the RegistryString function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long first argument, a different vulnerability than CVE-2007-5604, CVE-2007-5605, and CVE-2007-5606.
network
low complexity
hp CWE-94
7.5
2008-06-04 CVE-2007-5606 Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control
Buffer overflow in the MoveFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long argument, a different vulnerability than CVE-2007-5604, CVE-2007-5605, and CVE-2007-5607.
network
low complexity
hp
critical
10.0
2008-06-04 CVE-2007-5605 Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control
Buffer overflow in the GetFileTime function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long argument, a different vulnerability than CVE-2007-5604, CVE-2007-5606, and CVE-2007-5607.
network
hp
critical
9.3
2008-06-04 CVE-2007-5604 Code Injection vulnerability in HP Instant Support 1.0.0.22
Buffer overflow in the ExtractCab function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long first argument, a different vulnerability than CVE-2007-5605, CVE-2007-5606, and CVE-2007-5607.
network
low complexity
hp CWE-94
7.5
2007-07-04 CVE-2007-3554 Buffer Overflow vulnerability in HP Instant Support ActiveX Control Driver Check
Stack-based buffer overflow in the HPSDDX Class (SDD) ActiveX control in sdd.dll in HP Instant Support - Driver Check before 1.5.0.3 allows remote attackers to execute arbitrary code via a long argument to the queryHub function.
network
high complexity
hp
7.6
2002-10-04 CVE-2002-0993 Unspecified vulnerability in HP Instant Support
Unknown vulnerability in HP Instant Support Enterprise Edition (ISEE) product U2512A for HP-UX 11.00 and 11.11 may allow authenticated users to access restricted files.
local
low complexity
hp
4.6