Vulnerabilities > HP > Tru64

DATE CVE VULNERABILITY TITLE RISK
2007-02-21 CVE-2007-1043 Authentication Bypass vulnerability in Ezboo Webstats 3.0.3
Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to (1) update.php and (2) config.php.
7.5
2007-02-07 CVE-2007-0805 Information Disclosure vulnerability in HP Tru64 5.1
The ps (/usr/ucb/ps) command on HP Tru64 UNIX 5.1 1885 allows local users to obtain sensitive information, including environment variables of arbitrary processes, via the "auxewww" argument, a similar issue to CVE-1999-1587.
local
low complexity
hp
2.1
2006-12-10 CVE-2006-6418 Buffer Errors vulnerability in HP Tru64 4.0F/4.0G/5.1A
Buffer overflow in the POSIX Threads library (libpthread) on HP Tru64 UNIX 4.0F PK8, 4.0G PK4, and 5.1A PK6 allows local users to gain root privileges via a long PTHREAD_CONFIG environment variable.
local
low complexity
hp CWE-119
7.2
2006-10-23 CVE-2006-5452 Buffer Overflow vulnerability in HP Hp-Ux and Tru64
Buffer overflow in dtmail on HP Tru64 UNIX 4.0F through 5.1B and HP-UX B.11.00 through B.11.23 allows local users to execute arbitrary code via a long -a (aka attachment) argument.
local
low complexity
hp
4.6
2005-11-18 CVE-2005-3670 Denial Of Service vulnerability in HP Hp-Ux, Jetdirect 635N and Tru64
Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in HP HP-UX B.11.00, B.11.11, and B.11.23 running IPSec, HP Jetdirect 635n IPv6/IPsec Print Server, and HP Tru64 UNIX 5.1B-3 and 5.1B-2/PK4, allow remote attackers to cause a denial of service via certain IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
network
low complexity
hp
7.8
2005-09-20 CVE-2005-2993 Remote Denial Of Service vulnerability in HP-UX FTPD
Unspecified vulnerability in the FTP Daemon (ftpd) for HP Tru64 UNIX 4.0F PK8 and other versions up to HP Tru64 UNIX 5.1B-3, and HP-UX B.11.00, B.11.04, B.11.11, and B.11.23, allows remote authenticated users to cause a denial of service (hang).
local
low complexity
hp
1.7
2005-03-09 CVE-2005-0719 Denial Of Service vulnerability in HP Tru64 Message Queue Local
Unknown vulnerability in the systems message queue in HP Tru64 Unix 4.0F PK8 through 5.1B-2/PK4 allows local users to cause a denial of service (process crash) for processes such as nfsstat, pfstat, arp, ogated, rarpd, route, sendmail, srconfig, strsetup, trpt, netstat, and xntpd.
local
low complexity
hp
2.1
2004-12-31 CVE-2004-2678 IPsec/IKE Remote Privilege Escalation vulnerability in HP Tru64 5.1A/5.1Bp3Kbl24/5.1Bpk2Bl22
Unspecified vulnerability in HP Tru64 UNIX 5.1B PK2(BL22) and PK3(BL24), and 5.1A PK6(BL24), when using IPsec/IKE (Internet Key Exchange) with Certificates, allows remote attackers to gain privileges via unknown attack vectors.
network
high complexity
hp
5.1
2003-12-31 CVE-2003-1496 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in HP Tru64
Unspecified vulnerability in CDE dtmailpr of HP Tru64 4.0F through 5.1B allows local users to gain privileges via unknown attack vectors.
network
low complexity
hp CWE-119
critical
10.0
2003-05-12 CVE-2003-0221 Unspecified vulnerability in HP Tru64 5.1B
The (1) dupatch and (2) setld utilities in HP Tru64 UNIX 5.1B PK1 and earlier allows local users to overwrite files and possibly gain root privileges via a symlink attack.
local
low complexity
hp
7.2