Vulnerabilities > HP > High

DATE CVE VULNERABILITY TITLE RISK
2009-07-29 CVE-2009-1426 Unspecified vulnerability in HP products
Unspecified vulnerability on HP ProLiant DL and ML 100 Series G5, G5p, and G6 servers with ProLiant Onboard Administrator Powered by LO100i (formerly Lights Out 100) 3.07 and earlier allows remote attackers to cause a denial of service via unknown vectors.
network
low complexity
hp
7.8
2009-07-14 CVE-2009-1425 Denial of Service vulnerability in HP ProCurve Threat Management Services zl Module 'httpd'
Unspecified vulnerability in HP ProCurve Threat Management Services zl Module (J9155A) ST.1.0.090213 and earlier allows remote attackers to cause a denial of service by triggering a stop or crash in httpd, aka PR_18770, a different vulnerability than CVE-2009-1423 and CVE-2009-1424.
network
low complexity
hp
7.8
2009-07-14 CVE-2009-1424 Unspecified vulnerability in HP Procurve Threat Management Services ZL Module
Unspecified vulnerability in HP ProCurve Threat Management Services zl Module (J9155A) ST.1.0.090213 and earlier allows remote attackers to cause a denial of service via unknown vectors, aka PR_39412, a different vulnerability than CVE-2009-1423 and CVE-2009-1425.
network
low complexity
hp
7.8
2009-07-14 CVE-2009-1423 Unspecified vulnerability in HP Procurve Threat Management Services ZL Module
Unspecified vulnerability in HP ProCurve Threat Management Services zl Module (J9155A) ST.1.0.090213 and earlier allows remote attackers to cause a denial of service via unknown vectors, aka PR_39898, a different vulnerability than CVE-2009-1424 and CVE-2009-1425.
network
low complexity
hp
7.8
2009-07-02 CVE-2009-2298 Buffer Errors vulnerability in HP Openview Network Node Manager 7.53
Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.53 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, possibly involving a CGI request to webappmon.exe.
network
low complexity
hp CWE-119
7.5
2009-05-14 CVE-2009-0714 Privilege Escalation vulnerability in HP Data Protector Express 3.5/4.0
Unspecified vulnerability in the dpwinsup module (dpwinsup.dll) for dpwingad (dpwingad.exe) in HP Data Protector Express and Express SSE 3.x before build 47065, and Express and Express SSE 4.x before build 46537, allows remote attackers to cause a denial of service (application crash) or read portions of memory via one or more crafted packets.
local
low complexity
microsoft novell redhat suse hp
7.2
2009-04-21 CVE-2009-0716 Unspecified vulnerability in HP Storageworks Storage Mirroring 5/5.1
Unspecified vulnerability in HP StorageWorks Storage Mirroring 5 before 5.1.1.1090.15 allows remote attackers to cause a denial of service or obtain "access" via unknown vectors.
network
low complexity
hp
7.5
2009-03-25 CVE-2009-0920 Buffer Errors vulnerability in HP Network Node Manager 7.0.1/7.5.1/7.5.3
Stack-based buffer overflow in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long OvOSLocale cookie, a variant of CVE-2008-0067.
network
low complexity
hp CWE-119
7.5
2009-03-18 CVE-2009-0941 Permissions, Privileges, and Access Controls vulnerability in HP products
The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.
network
high complexity
hp CWE-264
7.6
2009-03-11 CVE-2009-0712 Unspecified vulnerability in HP WMI Mapper
Unspecified vulnerability in WMI Mapper for HP Systems Insight Manager before 2.5.2.0 allows local users to gain privileges via unknown vectors.
local
low complexity
hp
7.2