Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2741▼ 485 respecto a la semana anterior
Críticas / altas1305▼ 185 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

296 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.2)0.61%—Hp-ux20/12/200023/9/2026
Buffer overflow in HP-UX cstm program allows local users to gain root privileges.
ModificadaMedia (5.5)1.3%💥 ExploitHp-ux19/12/200023/9/2026
HP-UX 11.00 crontab allows local users to read arbitrary files via the -e option by creating a symlink to the target file during the crontab session, quitting the session, and reading the error messages that crontab generates.
ModificadaMedia (4.6)0.55%—Hp-ux19/12/200023/9/2026
Buffer overflows in lpspooler in the fileset PrinterMgmt.LP-SPOOL of HP-UX 11.0 and earlier allows local users to gain privileges.
ModificadaMedia (4.6)0.66%—Hp-uxHP Tru6411/12/200016/6/2026
Buffer overflow in dtterm in HP-UX 11.0 and HP Tru64 UNIX 4.0f through 5.1a allows local users to execute arbitrary code via a long -tn option.
ModificadaAlta (7.2)1.5%💥 ExploitHp-ux11/12/200023/9/2026
Buffer overflow in cu program in HP-UX 11.0 may allow local users to gain privileges via a long -l command line argument.
ModificadaAlta (10)14%💥 ExploitHp-ux20/10/200016/6/2026
Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via format strings in the PASS command.
ModificadaAlta (7.2)0.56%—Hp-ux20/10/200016/6/2026
Buffer overflow in bdf program in HP-UX 11.00 may allow local users to gain root privileges via a long -t option.
ModificadaMedia (4.6)0.48%—Hp-ux20/10/200016/6/2026
Vulnerability in newgrp command in HP-UX 11.0 allows local users to gain privileges.
ModificadaAlta (7.2)1.2%💥 ExploitHp-ux20/10/200016/6/2026
The net.init rc script in HP-UX 11.00 (S008net.init) allows local users to overwrite arbitrary files via a symlink attack that points from /tmp/stcp.conf to the targeted file.
ModificadaAlta (10)96%💥 ExploitHp-ux7/7/200016/6/2026
The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to execute arbitrary commands via the SITE EXEC command.
ModificadaAlta (10)8.4%💥 ExploitHp-ux7/6/200016/6/2026
The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges.
ModificadaMedia (4.6)0.84%💥 ExploitHp-ux2/6/200016/6/2026
man in HP-UX 10.20 and 11 allows local attackers to overwrite files via a symlink attack.
ModificadaMedia (4.6)0.48%—Hp-uxHP Vvos4/5/200016/6/2026
Vulnerability in shutdown command for HP-UX 11.X and 10.X allows allows local users to gain privileges via malformed input variables.
ModificadaMedia (4.6)0.49%—Hp-ux18/4/200016/6/2026
HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local users to cause a denial of service or gain additional privileges.
ModificadaMedia (5)1.6%—Hp-uxHP Vvos6/4/200016/6/2026
HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses.
ModificadaAlta (7.2)1.0%💥 ExploitHp-uxIBM AIXSCO Unixware2/3/200016/6/2026
Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges.
ModificadaAlta (7.5)2.0%—Hp-ux17/2/200016/6/2026
HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
ModificadaMedia (5)2.3%—Hp-ux24/1/200016/6/2026
The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of traffic in response to small packets, allowing remote attackers to cause the system to be used as a packet amplifier.
ModificadaAlta (7.2)0.97%💥 ExploitHp-ux2/1/200016/6/2026
The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.
ModificadaAlta (7.2)0.53%—Hp-ux2/1/200016/6/2026
The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.
ModificadaAlta (10)5.1%—Hp-ux28/12/199916/6/2026
Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files.
ModificadaAlta (7.2)0.54%—CDEHp-ux1/7/199916/6/2026
HP CDE program includes the current directory in root's PATH variable.
ModificadaAlta (10)12%💥 ExploitHp-uxSUN SolarisSunos1/7/199916/6/2026
Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd).
ModificadaMedia (4.6)0.54%—Hp-ux1/7/199916/6/2026
Buffer overflows in HP Software Distributor (SD) for HPUX 10.x and 11.x.
ModificadaAlta (7.5)2.1%—HP Visualize Conference FTPHp-ux1/7/199916/6/2026
The default FTP configuration in HP Visualize Conference allows conference users to send a file to other participants without authorization.
Orbitaley — Vulnerabilidades