Vulnerabilities
Summary — last 7 days
New vulnerabilities2,666▼ 407 vs. last week
Critical / high1,266▼ 215 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)215▼ 115 vs. last week
123 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | High (10) | 65% | 💥 Exploit | HP Openview Network Node Manager | 11/2/2011 | 6/16/2026 | Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1210. | |
| Modified | High (10) | 12% | — | HP Openview Network Node Manager | 11/2/2011 | 6/16/2026 | Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1209. | |
| Modified | High (10) | 12% | — | HP Openview Network Node Manager | 11/2/2011 | 6/16/2026 | Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1208. | |
| Modified | Medium (4.3) | 1.5% | — | HP Openview Performance Insight | 8/19/2011 | 6/16/2026 | Cross-site scripting (XSS) vulnerability in HP OpenView Performance Insight 5.3, 5.31, 5.4, 5.41, 5.41.001, and 5.41.002 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modified | Medium (6.4) | 2.5% | — | HP Openview Performance Insight | 8/11/2011 | 6/16/2026 | Unspecified vulnerability in HP OpenView Performance Insight 5.3, 5.31, 5.4, 5.41, 5.41.001, and 5.41.002 allows remote attackers to obtain access via unknown vectors. | |
| Modified | Low (3.5) | 0.89% | — | HP Openview Performance Insight | 8/11/2011 | 6/16/2026 | Cross-site scripting (XSS) vulnerability in HP OpenView Performance Insight 5.3, 5.31, 5.4, 5.41, 5.41.001, and 5.41.002 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | |
| Modified | Medium (6.4) | 4.8% | — | HP Openview Performance AgentHP Operations Agent | 7/1/2011 | 6/16/2026 | ovbbccb.exe 6.20.50.0 and other versions in HP OpenView Performance Agent 4.70 and 5.0; and Operations Agent 11.0, 8.60.005, 8.60.006, 8.60.007, 8.60.008, 8.60.501, and 8.53; allows remote attackers to delete arbitrary files via a full pathname in the File field in a Register command. | |
| Modified | High (10) | 21% | 💥 Exploit | HP Openview Storage Data Protector | 7/1/2011 | 6/16/2026 | Buffer overflow in omniinet.exe in the inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allows remote attackers to execute arbitrary code via a crafted request, related to the EXEC_CMD functionality. | |
| Modified | High (10) | 89% | 💥 Exploit | HP Openview Storage Data Protector | 7/1/2011 | 6/16/2026 | Multiple stack-based buffer overflows in the inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allow remote attackers to execute arbitrary code via a request containing crafted parameters. | |
| Modified | Medium (5) | 4.5% | — | HP Openview Storage Data Protector | 7/1/2011 | 6/16/2026 | The inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allows remote attackers to cause a denial of service (daemon exit) via a request containing crafted parameters. | |
| Modified | Medium (5) | 4.5% | — | HP Openview Storage Data Protector | 7/1/2011 | 6/16/2026 | The inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request containing crafted parameters. | |
| Modified | High (9.3) | 9.2% | — | HP Openview Storage Data Protector | 6/14/2011 | 6/16/2026 | Unspecified vulnerability in HP OpenView Storage Data Protector 6.0, 6.10, and 6.11 allows remote attackers to execute arbitrary code via unknown vectors. | |
| Modified | High (8.5) | 9.8% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Directory traversal vulnerability in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to read arbitrary files via directory traversal sequences in a filename in a GET_FILE message. | |
| Modified | High (10) | 14% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed bm message. | |
| Modified | High (10) | 15% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed omniiaputil message. | |
| Modified | High (10) | 14% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed HPFGConfig message. | |
| Modified | High (10) | 25% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed stutil message. | |
| Modified | High (10) | 15% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed EXEC_INTEGUTIL message. | |
| Modified | High (10) | 14% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed EXEC_SCRIPT message. | |
| Modified | High (10) | 14% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed GET_FILE message. | |
| Modified | High (10) | 14% | — | HP Openview Storage Data Protector | 5/7/2011 | 6/16/2026 | Stack-based buffer overflow in OmniInet.exe in the Backup Client Service in HP OpenView Storage Data Protector 6.00, 6.10, and 6.11 allows remote attackers to execute arbitrary code via a malformed EXEC_BAR message. | |
| Modified | High (10) | 82% | 💥 Exploit | HP Openview Performance Insight | 2/2/2011 | 6/16/2026 | HP OpenView Performance Insight Server 5.2, 5.3, 5.31, 5.4, and 5.41 contains a "hidden account" in the com.trinagy.security.XMLUserManager Java class, which allows remote attackers to execute arbitrary code via the doPost method in the com.trinagy.servlet.HelpManagerServlet class. | |
| Modified | High (7.1) | 4.2% | — | HP Openview Storage Data Protector | 1/28/2011 | 6/16/2026 | Unspecified vulnerability in HP OpenView Storage Data Protector 6.0, 6.10, and 6.11 allows remote attackers to cause a denial of service via unknown vectors. | |
| Modified | High (9.3) | 13% | — | HP Openview Storage Data Protector Cell Manager | 1/25/2011 | 6/16/2026 | Buffer overflow in crs.exe in HP OpenView Storage Data Protector Cell Manager 6.11 allows remote attackers to execute arbitrary code via unspecified message types. | |
| Modified | High (10) | 7.3% | — | HP Openview Network Node Manager | 1/13/2011 | 6/16/2026 | The CGI scripts in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 do not properly validate an unspecified parameter, which allows remote attackers to execute arbitrary commands by using a command string for this parameter's value, related to a "command injection vulnerability." |