← Back

Palm Webos

palm_webos

Vendor: Hp • 8 CVEs

CVEs (8)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hp
1Palm Webos
Apr 29, 2026
Aug 11, 2011
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in the Calendar application in HP Palm webOS 3.x before 3.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Hp
1Palm Webos
Apr 29, 2026
Aug 11, 2011
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in the Contacts application in HP Palm webOS 3.x before 3.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Hp
1Palm Webos
Apr 29, 2026
May 13, 2011
N/A· v4
N/A· v3
7.2 HIGH· v2
HP Palm webOS 1.4.5 and 1.4.5.1 does not properly restrict Plug-in Development Kit (PDK) applications, which allows local users to gain privileges by leveraging unintended filesystem write access.
1Hp
1Palm Webos
Apr 29, 2026
May 13, 2011
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Multiple cross-site scripting (XSS) vulnerabilities in the Email application in HP Palm webOS 1.4.5 and 1.4.5.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Hp
1Palm Webos
Apr 29, 2026
Dec 8, 2010
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in the Contacts Application in HP Palm webOS before 2.0 allows remote attackers to inject arbitrary web script or HTML via a crafted vCard file.
1Hp
1Palm Webos
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
5.6 MEDIUM· v2
Unspecified vulnerability in the camera application in HP Palm webOS 1.4.1 allows local users to overwrite arbitrary files via unknown vectors.
1Hp
1Palm Webos
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
6.2 MEDIUM· v2
Unspecified vulnerability in the service API in HP Palm webOS 1.4.1 allows local users to gain privileges by leveraging the ability to perform certain service calls.
1Hp
1Palm Webos
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
9.3 HIGH· v2
Unspecified vulnerability in Doc Viewer in HP Palm webOS 1.4.1 allows remote attackers to execute arbitrary code via a crafted document, as demonstrated by a Word document.