Vulnerabilities > HP > Openvms > 8.3

DATE CVE VULNERABILITY TITLE RISK
2008-09-05 CVE-2008-3947 Improper Input Validation vulnerability in HP Openvms 8.3
DCL (aka the CLI) in OpenVMS Alpha 8.3 allows local users to gain privileges via a long command line.
local
low complexity
hp CWE-20
7.2
2007-07-12 CVE-2007-3730 Unspecified vulnerability in HP Openvms 8.3
The default configuration of the POP server in TCP/IP Services 5.6 for HP OpenVMS 8.3 does not log the source IP address or attempted username for login attempts, which might help remote attackers to avoid identification.
network
low complexity
hp
5.0
2007-07-12 CVE-2007-3729 Unspecified vulnerability in HP Openvms 8.3
The default configuration of the POP server in TCP/IP Services 5.6 for HP OpenVMS 8.3 generates different responses depending on whether or not a username is valid, which allows remote attackers to enumerate valid POP usernames.
network
low complexity
hp
5.0
2007-06-04 CVE-2007-2998 Local Denial of Service vulnerability in HP Openvms 8.3
The Pascal run-time library (PAS$RTL.EXE) before 20070418 on OpenVMS for Integrity Servers 8.3, and PAS$RTL.EXE before 20070419 on OpenVMS Alpha 8.3, does not properly restore PC and PSL values, which allows local users to cause a denial of service (system crash) via certain Pascal code.
local
low complexity
hp
4.9
2007-05-02 CVE-2007-2468 Local Denial of Service vulnerability in HP Openvms 8.21/8.3
Unspecified vulnerability in HP OpenVMS for Integrity Servers 8.2-1 and 8.3 allows local users to cause a denial of service (crash) via "Program actions relating to exceptions." The vendor has addressed this issue with the following product updates: HP OpenVMS 8.2-1 Integrity: HP VMS821I_SYS-V0400.ZIPEXE ftp://ftp.itrc.hp.com/openvms_patches/i64/V8.2-1/VMS821I_SYS-V0400.ZIP EXE HP OpenVMS 8.3 Integrity: HP VMS83I_SYS-V0200.ZIPEXE ftp://ftp.itrc.hp.com/openvms_patches/i64/V8.3/VMS83I_SYS-V0200.ZIPEXE
local
low complexity
hp
4.9