← Back

Hp

hp

2,335 CVEs • 17,248 products

Products (17,248)

Click to collapse
Toggle
Hp Ux
hp-ux
Instantos
instantos
Tru64
tru64
Loadrunner
loadrunner
Sitescope
sitescope
Openvms
openvms
Oneview
oneview

CVEs (2,335)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hp
10Storage Management Software
Storevirtual 4130Storevirtual 4330+7 more
May 6, 2026
Jul 16, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in HP StoreVirtual 4000 Storage and StoreVirtual VSA 9.5 through 11.0 allows remote attackers to obtain sensitive information via unknown vectors.
1Hp
1Universal Configuration Management Database
May 6, 2026
Jul 7, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in HP Universal CMDB 10.01 and 10.10 allows remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors, aka ZDI-CAN-2104.
1Hp
1Universal Configuration Management Database
May 6, 2026
Jul 7, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in HP Universal CMDB 10.01 and 10.10 allows remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors, aka ZDI-CAN-2091.
1Hp
1Universal Configuration Management Database
May 6, 2026
Jul 7, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in HP Universal CMDB 10.01 and 10.10 allows remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors, aka ZDI-CAN-2083.
1Hp
1Sitescope
May 6, 2026
Jul 7, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in HP SiteScope 11.1x through 11.13 and 11.2x through 11.24 allows remote attackers to bypass authentication via unknown vectors, aka ZDI-CAN-2140.
1Hp
1Enterprise Maps
May 6, 2026
Jun 28, 2014
N/A· v4
N/A· v3
3.5 LOW· v2
HP Enterprise Maps 1.00 allows remote authenticated users to read arbitrary files via a WSDL document containing an XML external entity declaration in conjunction with an entity reference within a GetQuote operation, rel...Show more
HP Enterprise Maps 1.00 allows remote authenticated users to read arbitrary files via a WSDL document containing an XML external entity declaration in conjunction with an entity reference within a GetQuote operation, related to an XML External Entity (XXE) issue.Show less
1Hp
1Release Control
May 6, 2026
Jun 28, 2014
N/A· v4
N/A· v3
9.0 HIGH· v2
Unspecified vulnerability in HP Release Control 9.x before 9.13 p3 and 9.2x before RC 9.21.0003 p1 on Windows and 9.2x before RC 9.21.0002 p1 on Linux allows remote authenticated users to gain privileges via unknown vect...Show more
Unspecified vulnerability in HP Release Control 9.x before 9.13 p3 and 9.2x before RC 9.21.0003 p1 on Windows and 9.2x before RC 9.21.0002 p1 on Linux allows remote authenticated users to gain privileges via unknown vectors.Show less
1Hp
1Release Control
May 6, 2026
Jun 28, 2014
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in HP Release Control 9.x before 9.13 p3 and 9.2x before RC 9.21.0003 p1 on Windows and 9.2x before RC 9.21.0002 p1 on Linux allows remote authenticated users to obtain sensitive information via...Show more
Unspecified vulnerability in HP Release Control 9.x before 9.13 p3 and 9.2x before RC 9.21.0003 p1 on Windows and 9.2x before RC 9.21.0002 p1 on Linux allows remote authenticated users to obtain sensitive information via unknown vectors.Show less
1Hp
1Executive Scorecard
May 6, 2026
Jun 19, 2014
N/A· v4
N/A· v3
9.0 HIGH· v2
Directory traversal vulnerability in the fndwar web application in HP Executive Scorecard 9.40 and 9.41 allows remote authenticated users to execute arbitrary code, or obtain sensitive information or delete data, via uns...Show more
Directory traversal vulnerability in the fndwar web application in HP Executive Scorecard 9.40 and 9.41 allows remote authenticated users to execute arbitrary code, or obtain sensitive information or delete data, via unspecified vectors, aka ZDI-CAN-2120.Show less
1Hp
1Executive Scorecard
May 6, 2026
Jun 19, 2014
N/A· v4
N/A· v3
7.1 HIGH· v2
Directory traversal vulnerability in the Content Acceleration Pack (CAP) web application in HP Executive Scorecard 9.40 and 9.41 allows remote authenticated users to execute arbitrary code by uploading an executable file...Show more
Directory traversal vulnerability in the Content Acceleration Pack (CAP) web application in HP Executive Scorecard 9.40 and 9.41 allows remote authenticated users to execute arbitrary code by uploading an executable file, aka ZDI-CAN-2117.Show less
1Hp
1Executive Scorecard
May 6, 2026
Jun 19, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
The Java Glassfish Admin Console in HP Executive Scorecard 9.40 and 9.41 does not require authentication, which allows remote attackers to execute arbitrary code via a session on TCP port 10001, aka ZDI-CAN-2116.
1Hp
1Service Virtualization
May 6, 2026
Jun 18, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
Directory traversal vulnerability in CommunicationServlet in HP Service Virtualization 3.x before 3.50.1, when the AutoPass license server is enabled, allows remote attackers to create arbitrary files and consequently ex...Show more
Directory traversal vulnerability in CommunicationServlet in HP Service Virtualization 3.x before 3.50.1, when the AutoPass license server is enabled, allows remote attackers to create arbitrary files and consequently execute arbitrary code via unspecified vectors, aka ZDI-CAN-2031.Show less
4Fedoraproject
FreebsdHp+1 more
4Fedora
FreebsdHpux+1 more
May 6, 2026
Jun 4, 2014
N/A· v4
N/A· v3
1.9 LOW· v2
The sm_close_on_exec function in conf.c in sendmail before 8.14.9 has arguments in the wrong order, and consequently skips setting expected FD_CLOEXEC flags, which allows local users to access unintended high-numbered fi...Show more
The sm_close_on_exec function in conf.c in sendmail before 8.14.9 has arguments in the wrong order, and consequently skips setting expected FD_CLOEXEC flags, which allows local users to access unintended high-numbered file descriptors via a custom mail-delivery program.Show less
1Hp
1Operations Manager I
May 6, 2026
May 26, 2014
N/A· v4
N/A· v3
8.5 HIGH· v2
Unspecified vulnerability in HP Operations Manager i 9.1 through 9.13 and 9.2 through 9.24 allows remote authenticated users to execute arbitrary code by leveraging the OMi operator role.
1Hp
2Icewall Mcrp
Icewall Sso
May 6, 2026
May 22, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in HP IceWall SSO 10.0 Dfw and IceWall MCRP 2.1 and 3.0 allows remote attackers to cause a denial of service via unknown vectors.
1Hp
78/20q Fibre Channel Switch 16 Port
8/20q Fibre Channel Switch 8 Port8gb Simple San Connection Kit+4 more
May 6, 2026
May 10, 2014
N/A· v4
N/A· v3
1.7 LOW· v2
Unspecified vulnerability on HP 8/20q switches, SN6000 switches, and 8Gb Simple SAN Connection Kit with firmware before 8.0.14.08.00 allows remote authenticated users to obtain sensitive information via unknown vectors.
1Hp
1Network Node Manager I
May 6, 2026
May 10, 2014
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 9.0, 9.10, and 9.20 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Hp
1Oneview
May 6, 2026
May 8, 2014
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Unspecified vulnerability in HP OneView 1.0 and 1.01 allows remote authenticated users to gain privileges via unknown vectors.
1Hp
1Integrated Lights Out 2 Firmware
May 6, 2026
Apr 24, 2014
N/A· v4
N/A· v3
7.8 HIGH· v2
The server in HP Integrated Lights-Out 2 (aka iLO 2) 2.23 and earlier allows remote attackers to cause a denial of service via crafted HTTPS traffic, as demonstrated by traffic from a CVE-2014-0160 vulnerability-assessme...Show more
The server in HP Integrated Lights-Out 2 (aka iLO 2) 2.23 and earlier allows remote attackers to cause a denial of service via crafted HTTPS traffic, as demonstrated by traffic from a CVE-2014-0160 vulnerability-assessment tool.Show less
1Hp
1Hp Ux Whitelisting
May 6, 2026
Apr 19, 2014
N/A· v4
N/A· v3
3.8 LOW· v2
Unspecified vulnerability in HP HP-UX Whitelisting (aka WLI) before A.01.02.02 on HP-UX B.11.31 allows local users to bypass intended access restrictions via unknown vectors.