Lucene search

K

Hp Security Vulnerabilities

cve
cve

CVE-2013-4840

Unspecified vulnerability in HP and H3C VPN Firewall Module products SECPATH1000FE before 5.20.R3177 and SECBLADEFW before 5.20.R3177 allows remote attackers to cause a denial of service via unknown vectors.

6.8AI Score

0.003EPSS

2014-07-28 05:55 PM
35
cve
cve

CVE-2013-4841

Unspecified vulnerability in dbd_manager in LeftHand OS before 11.0 in HP StoreVirtual 4000 and StoreVirtual VSA Software (formerly LeftHand Virtual SAN Appliance) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1509.

7.8AI Score

0.859EPSS

2014-02-26 02:55 PM
20
cve
cve

CVE-2013-4842

Cross-site scripting (XSS) vulnerability in HP Integrated Lights-Out 4 (iLO4) with firmware before 1.32 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

5.8AI Score

0.002EPSS

2022-10-03 04:14 PM
60
cve
cve

CVE-2013-4843

Unspecified vulnerability in HP Integrated Lights-Out 4 (iLO4) with firmware before 1.32 allows remote authenticated users to obtain sensitive information via unknown vectors.

5.8AI Score

0.001EPSS

2022-10-03 04:14 PM
64
4
cve
cve

CVE-2013-4844

Unspecified vulnerability in HP Service Manager 7.11, 9.21, 9.30, 9.31, and 9.32, and ServiceCenter 6.2.8, allows remote attackers to execute arbitrary code via unknown vectors.

7.9AI Score

0.027EPSS

2013-11-29 04:33 AM
27
cve
cve

CVE-2013-4845

Cross-site scripting (XSS) vulnerability on HP Officejet Pro 8500 (aka A909) All-in-One printers allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

5.7AI Score

0.002EPSS

2013-12-14 10:55 PM
23
cve
cve

CVE-2013-4846

Unspecified vulnerability in HP System Management Homepage (SMH) before 7.3 allows remote attackers to obtain sensitive information via unknown vectors.

6.1AI Score

0.003EPSS

2014-03-14 10:55 AM
30
cve
cve

CVE-2013-4854

The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query with...

5.6AI Score

0.953EPSS

2013-07-29 01:59 PM
390
cve
cve

CVE-2013-5870

Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX.

4.3AI Score

0.019EPSS

2014-01-15 04:11 PM
35
cve
cve

CVE-2013-5895

Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows remote attackers to affect confidentiality via unknown vectors related to JavaFX.

4.1AI Score

0.004EPSS

2014-01-15 04:08 PM
34
cve
cve

CVE-2013-5904

Unspecified vulnerability in Oracle Java SE 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

4.3AI Score

0.016EPSS

2014-01-15 04:08 PM
37
cve
cve

CVE-2013-5906

Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Install, a different vulnerability than CVE-2013-5905.

4.5AI Score

0.015EPSS

2014-01-15 04:08 PM
35
cve
cve

CVE-2013-6188

Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) 7.1 through 7.2.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

7.1AI Score

0.001EPSS

2014-03-14 10:55 AM
26
cve
cve

CVE-2013-6189

Unspecified vulnerability in the Archive Query Server in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6.4, and 7.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1666.

7.8AI Score

0.924EPSS

2013-12-29 04:25 AM
31
cve
cve

CVE-2013-6191

Cross-site scripting (XSS) vulnerability in HP Operations Orchestration before 9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

5.8AI Score

0.017EPSS

2013-12-17 04:46 AM
17
cve
cve

CVE-2013-6192

Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration before 9 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

7.2AI Score

0.001EPSS

2013-12-17 04:46 AM
17
cve
cve

CVE-2013-6193

Unspecified vulnerability on HP LaserJet M1522n and M2727; LaserJet Pro 100, 300, 400, CM1415fnw, CP1*, M121*, M1536dnf, and P1*; Color LaserJet CM* and CP*; and TopShot LaserJet Pro M275 printers allows remote attackers to cause a denial of service via unknown vectors.

6.8AI Score

0.009EPSS

2013-12-17 03:21 PM
21
cve
cve

CVE-2013-6194

Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1905.

7.7AI Score

0.761EPSS

2014-01-04 04:51 AM
29
cve
cve

CVE-2013-6195

Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-2008.

7.8AI Score

0.835EPSS

2014-01-04 04:51 AM
37
cve
cve

CVE-2013-6196

Cross-site scripting (XSS) vulnerability in HP Autonomy Ultraseek 5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

5.3AI Score

0.001EPSS

2013-12-21 02:22 PM
26
cve
cve

CVE-2013-6197

Unspecified vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 p8 allows remote authenticated users to execute arbitrary code via unknown vectors.

7.5AI Score

0.004EPSS

2013-12-29 04:25 AM
17
cve
cve

CVE-2013-6198

Cross-site scripting (XSS) vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 p8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

5.8AI Score

0.014EPSS

2013-12-29 04:25 AM
22
cve
cve

CVE-2013-6200

Unspecified vulnerability in m4 in HP HP-UX B.11.23 and B.11.31 allows local users to obtain sensitive information or modify data via unknown vectors.

5.7AI Score

0.0004EPSS

2014-03-11 01:01 PM
24
cve
cve

CVE-2013-6201

Unspecified vulnerability in HP Security Management System 3.3.0, 3.5.0 before patch 1, and 3.6.0 before patch 2 allows remote attackers to execute arbitrary code via unknown vectors.

7.8AI Score

0.034EPSS

2014-03-06 11:55 AM
29
cve
cve

CVE-2013-6202

Multiple cross-site request forgery (CSRF) vulnerabilities in HP Service Manager 9.30, 9.31, 9.32, and 9.33 allow remote attackers to hijack the authentication of unspecified victims for requests that (1) insert XSS sequences or (2) execute arbitrary code.

7.3AI Score

0.013EPSS

2014-02-24 04:48 AM
27
cve
cve

CVE-2013-6203

The Web Console in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6.4, 7.0, and 7.1 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, aka ZDI-CAN-1656.

7.5AI Score

0.412EPSS

2014-02-26 02:55 PM
17
cve
cve

CVE-2013-6204

The Web Console in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6.4, 7.0, and 7.1 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, aka ZDI-CAN-2004.

7.5AI Score

0.412EPSS

2014-02-26 02:55 PM
21
cve
cve

CVE-2013-6205

Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment allows local users to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.

6.5AI Score

0.0004EPSS

2014-03-14 10:55 AM
26
cve
cve

CVE-2013-6206

Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.

6.9AI Score

0.007EPSS

2014-03-14 10:55 AM
23
cve
cve

CVE-2013-6207

Unspecified vulnerability in the loadFileContents function in the SOAP implementation in HP SiteScope 10.1x, 11.1x, and 11.21 allows remote attackers to read arbitrary files or cause a denial of service via unknown vectors, aka ZDI-CAN-2084.

6.9AI Score

0.216EPSS

2014-03-11 01:01 PM
21
cve
cve

CVE-2013-6208

Unspecified vulnerability in HP Smart Update Manager 5.3.5 before build 70 on Linux allows local users to gain privileges via unknown vectors.

6.6AI Score

0.0004EPSS

2014-03-16 02:06 PM
18
cve
cve

CVE-2013-6209

Unspecified vulnerability in rpc.lockd in the NFS subsystem in HP HP-UX B.11.11 and B.11.23 allows remote attackers to cause a denial of service via unknown vectors.

6.6AI Score

0.003EPSS

2014-03-14 10:55 AM
24
cve
cve

CVE-2013-6210

Unspecified vulnerability in HP Unified Functional Testing before 12.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1932.

7.7AI Score

0.859EPSS

2014-03-16 02:06 PM
19
cve
cve

CVE-2013-6211

Unspecified vulnerability in HP StoreOnce Virtual Storage Appliance (VSA) before 3.7.2, StoreOnce 26xx and 4210 iSCSI Backup System before 3.9.0, StoreOnce 4210 FC Backup System before 3.9.0, and StoreOnce 4xxx Backup System before 3.9.0 allows remote attackers to obtain sensitive information or ca...

6.7AI Score

0.004EPSS

2014-03-29 01:55 AM
25
cve
cve

CVE-2013-6212

Unspecified vulnerability in HP Database and Middleware Automation 10.0, 10.01, 10.10, and 10.20 before 10.20.100 allows remote authenticated users to obtain sensitive information via unknown vectors.

5.8AI Score

0.002EPSS

2014-04-19 09:55 PM
24
cve
cve

CVE-2013-6213

Unspecified vulnerability in Virtual User Generator in HP LoadRunner before 11.52 Patch 1 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1833.

7.8AI Score

0.912EPSS

2014-04-19 04:49 AM
23
cve
cve

CVE-2013-6214

Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 9.05, 10.01, and 10.10 allows remote authenticated users to obtain sensitive information via unknown vectors, aka ZDI-CAN-2042.

5.9AI Score

0.001EPSS

2014-04-19 04:49 AM
19
cve
cve

CVE-2013-6215

Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 10.01 and 10.10 allows remote authenticated users to execute arbitrary code via unknown vectors, aka ZDI-CAN-1977.

7.5AI Score

0.086EPSS

2014-04-19 09:55 PM
17
cve
cve

CVE-2013-6216

Unspecified vulnerability in HP Array Configuration Utility, Array Diagnostics Utility, ProLiant Array Diagnostics, and SmartSSD Wear Gauge Utility 9.40 and earlier allows local users to gain privileges via unknown vectors.

6.5AI Score

0.0004EPSS

2014-04-12 04:37 AM
22
cve
cve

CVE-2013-6218

Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x, 9.1x, and 9.2x allows remote attackers to execute arbitrary code via unknown vectors.

7.9AI Score

0.034EPSS

2014-04-19 09:55 PM
22
cve
cve

CVE-2013-6219

Unspecified vulnerability in HP HP-UX Whitelisting (aka WLI) before A.01.02.02 on HP-UX B.11.31 allows local users to bypass intended access restrictions via unknown vectors.

6.4AI Score

0.0004EPSS

2014-04-19 09:55 PM
17
cve
cve

CVE-2013-6220

Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 9.0, 9.10, and 9.20 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

5.7AI Score

0.017EPSS

2014-05-10 01:55 AM
22
cve
cve

CVE-2013-6221

Directory traversal vulnerability in CommunicationServlet in HP Service Virtualization 3.x before 3.50.1, when the AutoPass license server is enabled, allows remote attackers to create arbitrary files and consequently execute arbitrary code via unspecified vectors, aka ZDI-CAN-2031.

7.6AI Score

0.971EPSS

2014-06-18 04:55 PM
29
cve
cve

CVE-2013-6222

Cross-site scripting (XSS) vulnerability in the Mobility Web Client and Service Request Catalog (SRC) components in HP Service Manager (SM) 7.21 and 9.x before 9.34 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

5.9AI Score

0.002EPSS

2014-08-23 11:55 PM
20
cve
cve

CVE-2013-6402

base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.11 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/hp-pkservice.log temporary file.

6.1AI Score

0.0004EPSS

2014-01-05 08:55 PM
40
cve
cve

CVE-2013-6427

upgrade.py in the hp-upgrade service in HP Linux Imaging and Printing (HPLIP) 3.x through 3.13.11 launches a program from an http URL, which allows man-in-the-middle attackers to execute arbitrary code by gaining control over the client-server data stream.

7.2AI Score

0.005EPSS

2013-12-09 06:55 PM
32
cve
cve

CVE-2013-6852

Cross-site request forgery (CSRF) vulnerability in html/json.html on HP 2620 switches allows remote attackers to hijack the authentication of administrators for requests that change an administrative password via the setPassword method.

7.5AI Score

0.001EPSS

2022-10-03 04:14 PM
25
cve
cve

CVE-2014-0382

Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows remote attackers to affect availability via unknown vectors related to JavaFX.

4.3AI Score

0.019EPSS

2014-01-15 04:08 PM
27
cve
cve

CVE-2014-0418

Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, and CVE-2014-0424.

4.5AI Score

0.022EPSS

2014-01-15 04:08 PM
43
cve
cve

CVE-2014-2490

Unspecified vulnerability in the Java SE component in Oracle Java SE 7u60 and SE 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.

5.5AI Score

0.02EPSS

2014-07-17 05:10 AM
59
Total number of security vulnerabilities2181