Vulnerabilities > HP > High

DATE CVE VULNERABILITY TITLE RISK
2005-05-03 CVE-2005-1826 Remote Security vulnerability in HP Radia Client 3.1.0.0
Buffer overflow in HP Radia Notify Daemon 3.1.0.0 (formerly by Novadigm), and other versions including 2.x, 3.x, and 4.x, allows remote attackers to execute arbitrary code via a long file extension.
network
low complexity
hp
7.5
2005-05-03 CVE-2005-1825 Unspecified vulnerability in HP Radia Client 3.1.2.0
Multiple stack-based buffer overflows in the nvd_exec function in HP Radia Notify Daemon 3.1.2.0 (formerly by Novadigm), and other versions including 2.x, 3.x, and 4.x, allows remote attackers to execute arbitrary code via a command with crafted parameters to a RADEXECD process.
network
low complexity
hp
7.5
2005-05-03 CVE-2005-1434 Denial-Of-Service vulnerability in OpenView Network Node Manager
Multiple unknown vulnerabilities in OpenView Network Node Manager (OV NNM) 6.2, 6.4, 7.01, and 7.50 allow attackers to cause a denial of service or execute arbitrary code.
network
low complexity
hp
7.5
2005-05-03 CVE-2005-1370 Remote Command Execution vulnerability in HP OpenView Radia Management Portal 1.0/2.0
Unknown vulnerability in Radia Management Agent (RMA) in HP OpenView Radia Management Portal (RMP) 1.x and 2.x allows remote attackers to execute arbitrary commands via unknown vectors.
network
low complexity
hp
7.5
2005-02-09 CVE-2004-0965 Local Privilege Escalation vulnerability in HP-UX STMKFONT
stmkfont in HP-UX B.11.00 through B.11.23 relies on the user-specified PATH when executing certain commands, which allows local users to execute arbitrary code by modifying the PATH environment variable to point to malicious programs.
local
low complexity
hp
7.2
2005-02-09 CVE-2004-0940 Incorrect Calculation of Buffer Size vulnerability in multiple products
Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.
local
low complexity
openpkg apache slackware hp suse trustix CWE-131
7.8
2004-12-31 CVE-2004-2693 Permissions, Privileges, and Access Controls vulnerability in HP Hp-Ux 11.00/11.04/11.11
HP-UX B.11.00 and B.11.11 with B6848AB GTK+ Support Libraries installed uses insecure directory permissions, which allows local users to gain privileges via files in /opt/gnome/src/GLib/.
local
low complexity
hp CWE-264
7.2
2004-12-31 CVE-2004-1811 Unspecified vulnerability in HP SSL Http Server 5.0/5.92
The SSL HTTP Server in HP Web-enabled Management Software 5.0 through 5.92, with anonymous access enabled, allows remote attackers to compromise the trusted certificates by uploading their own certificates.
network
low complexity
hp
7.5
2004-12-31 CVE-2004-1480 Access Restriction Bypass vulnerability in HP StorageWorks Command View XP
Unknown vulnerability in the management station in HP StorageWorks Command View XP 1.8B and earlier allows remote attackers to bypass access restrictions.
network
low complexity
hp
7.5
2004-12-31 CVE-2004-1332 Buffer Overflow vulnerability in HP HP-UX FTP Server Debug Logging Mode
Stack-based buffer overflow in the FTP daemon in HP-UX 11.11i, with the -v (debug) option enabled, allows remote attackers to execute arbitrary code via a long command request.
network
low complexity
hp
7.5