Vulnerabilities > HP > Nonstop Server

DATE CVE VULNERABILITY TITLE RISK
2018-03-01 CVE-2018-6653 Inadequate Encryption Strength vulnerability in Comforte Swap
comforte SWAP 1049 through 1069 and 20.0.0 through 21.5.3 (as used in SSLOBJ on HPE NonStop SSL T0910, and in the comforte SecurCS, SecurFTP, SecurLib/SSL-AT, and SecurTN products), after executing the RELOAD CERTIFICATES command, does not ensure that clients use a strong TLS cipher suite, which makes it easier for remote attackers to defeat intended cryptographic protection mechanisms by sniffing the network.
network
low complexity
comforte hp CWE-326
5.0
2018-02-15 CVE-2017-8974 Unspecified vulnerability in HP Nonstop Server Software
A Local Authentication Restriction Bypass vulnerability in HPE NonStop Server version L-Series: T6533L01 through T6533L01^ADN; J-Series and H-series: T6533H02 through T6533H04^ADF and T6533H05 through T6533H05^ADL was found.
local
low complexity
hp
3.6
2018-02-15 CVE-2017-5803 Information Exposure vulnerability in HP Nonstop Server Software
A Remote Disclosure of Information vulnerability in HPE NonStop Servers using SSH Service version L series: T0801L02 through T0801L02^ABX; J and H series: T0801H01 through T0801H01^ACA was found.
network
low complexity
hp CWE-200
7.8
2018-02-15 CVE-2017-5788 Information Exposure vulnerability in HP Nonstop Server Software
A Local Disclosure of Sensitive Information vulnerability in HPE NonStop Software Essentials version T0894 T0894H02 through T0894H02^AAI was found.
local
low complexity
hp CWE-200
4.9
2013-02-13 CVE-2012-3280 Unspecified vulnerability in HP Nonstop Server and Nonstop Server Software
Multiple unspecified vulnerabilities on HP NonStop Servers H06.x and J06.x allow remote authenticated users to obtain sensitive information, modify data, or cause a denial of service via an OSS Remote Operation over an Expand connection.
hp
6.3
2011-10-02 CVE-2011-2411 Remote Code Execution vulnerability in HP NonStop Server
Unspecified vulnerability on HP NonStop Servers with software H06.x through H06.23.00 and J06.x through J06.12.00, when Samba is used, allows remote authenticated users to execute arbitrary code via unknown vectors.
network
low complexity
samba hp
critical
9.0
2009-12-02 CVE-2009-2686 Unspecified vulnerability in HP Nonstop Server
Unspecified vulnerability in HP NonStop G06.12.00 through G06.32.00, H06.08.00 through H06.18.01, and J06.04.00 through J06.07.01 allows local users to gain privileges, cause a denial of service, or obtain "access to data" via unknown vectors.
local
low complexity
hp
7.2
2009-11-13 CVE-2009-2678 Unspecified vulnerability in HP Nonstop Server
Unspecified vulnerability in Open System Services (OSS) Name Server on HP NonStop G06.27, G06.28, G06.29, G06.30, H06.06, H06.07, H06.08, and J06.03 allows remote attackers to obtain sensitive information via unknown vectors.
network
low complexity
hp
4.0
2006-11-04 CVE-2006-5704 Unspecified vulnerability in HP Nonstop Server G06.29
HP NonStop Server G06.29, when running Standard Security T6533G06 before T6533G06^ABK, does not properly evaluate access permissions to OSS directories when no optional ACL entry exists, which allows local users to read arbitrary files.
local
high complexity
hp
6.2