VendorsHPvvosall versions
Vulnerabilities

HP VVOS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

14CVEs
CVE-2004-0492
Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.
Published 2004-06-23 · Modified
10.0EPSS 0.336
CVE-2001-1264
Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges.
Published 2002-05-03 · Modified
10.0EPSS 0.039
CVE-1999-0992
HP VirtualVault with the PHSS_17692 patch allows unprivileged processes to bypass access restrictions via the Trusted Gateway Proxy (TGP).
Published 2000-01-18 · Modified
10.0EPSS 0.033
CVE-2004-1332
Stack-based buffer overflow in the FTP daemon in HP-UX 11.11i, with the -v (debug) option enabled, allows remote attackers to execute arbitrary code via a long command request.
Published 2005-01-06 · Modified
7.5EPSS 0.095
CVE-1999-0057
Vacation program allows command execution by remote users through a sendmail command.
Published 1999-09-29 · Modified
7.5EPSS 0.082
CVE-2002-1408
Unknown vulnerability or vulnerabilities in HP OpenView EMANATE 14.2 snmpModules allow the SNMP read-write community name to be exposed, related to (1) "'read-only' community access," and/or (2) an easily guessable community name.
Published 2003-03-18 · Modified
7.5EPSS 0.021
CVE-1999-0306
buffer overflow in HP xlock program.
Published 2000-02-04 · Modified
7.22 PoCEPSS 0.017
CVE-1999-0014
Unauthorized privileged access or denial of service via dtappgather program in CDE.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.012
CVE-2001-1244
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process.
Published 2002-05-03 · Modified
5.01 PoCEPSS 0.220
CVE-2000-0965
The NSAPI plugins for TGA and the Java Servlet proxy in HP-UX VVOS 10.24 and 11.04 allows an attacker to cause a denial of service (high CPU utilization).
Published 2001-01-22 · Modified
5.0EPSS 0.025
CVE-2002-1793
HTTP Server mod_ssl module running on HP-UX 11.04 with Virtualvault OS (VVOS) 4.5 through 4.6 closes the connection when the Apache server times out during an SSL request, which may allow attackers to cause a denial of service.
Published 2005-06-28 · Modified
5.0EPSS 0.022
CVE-2000-0251
HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses.
Published 2000-07-12 · Modified
5.0EPSS 0.016
CVE-2002-1439
Unknown vulnerability related to stack corruption in the TGA daemon for HP-UX 11.04 (VVOS) Virtualvault 4.0, 4.5, and 4.6 may allow attackers to obtain access to system files.
Published 2003-03-18 · Modified
4.6EPSS 0.006
CVE-2000-0414
Vulnerability in shutdown command for HP-UX 11.X and 10.X allows allows local users to gain privileges via malformed input variables.
Published 2000-07-12 · Modified
4.6EPSS 0.005