Vulnerabilities > HP > Instant Support
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-06-04 | CVE-2008-0953 | Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control The StartApp function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary programs via a .exe filename in the argument, a different vulnerability than CVE-2007-5608 and CVE-2008-0953. | 10.0 |
2008-06-04 | CVE-2008-0952 | Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control The AppendStringToFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to create files with arbitrary content via a full pathname in the first argument and the content in the second argument, a different vulnerability than CVE-2007-5608 and CVE-2008-0953. | 9.3 |
2008-06-04 | CVE-2007-5610 | Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control The DeleteSingleFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to delete an arbitrary file via a full pathname in the argument. | 10.0 |
2008-06-04 | CVE-2007-5608 | Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control The DownloadFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to force a download of an arbitrary file onto a client machine via a URL in the first argument and a destination filename in the second argument, a different vulnerability than CVE-2008-0952 and CVE-2008-0953. | 9.3 |
2008-06-04 | CVE-2007-5607 | Code Injection vulnerability in HP Instant Support 1.0.0.22 Buffer overflow in the RegistryString function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long first argument, a different vulnerability than CVE-2007-5604, CVE-2007-5605, and CVE-2007-5606. | 7.5 |
2008-06-04 | CVE-2007-5606 | Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control Buffer overflow in the MoveFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long argument, a different vulnerability than CVE-2007-5604, CVE-2007-5605, and CVE-2007-5607. | 10.0 |
2008-06-04 | CVE-2007-5605 | Code Execution in RETIRED: HP Instant Support 'HPISDataManager.dll' ActiveX Control Buffer overflow in the GetFileTime function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long argument, a different vulnerability than CVE-2007-5604, CVE-2007-5606, and CVE-2007-5607. | 9.3 |
2008-06-04 | CVE-2007-5604 | Code Injection vulnerability in HP Instant Support 1.0.0.22 Buffer overflow in the ExtractCab function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long first argument, a different vulnerability than CVE-2007-5605, CVE-2007-5606, and CVE-2007-5607. | 7.5 |
2007-07-04 | CVE-2007-3554 | Buffer Overflow vulnerability in HP Instant Support ActiveX Control Driver Check Stack-based buffer overflow in the HPSDDX Class (SDD) ActiveX control in sdd.dll in HP Instant Support - Driver Check before 1.5.0.3 allows remote attackers to execute arbitrary code via a long argument to the queryHub function. | 7.6 |
2002-10-04 | CVE-2002-0993 | Unspecified vulnerability in HP Instant Support Unknown vulnerability in HP Instant Support Enterprise Edition (ISEE) product U2512A for HP-UX 11.00 and 11.11 may allow authenticated users to access restricted files. | 4.6 |