Vvos
Vendor:
First CVE: Nov 4, 1997 · Active for 28 years
14
Total CVEs
More Total CVEs than 91% of tracked products
2.0
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 39% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Vvos over time
Volume of CVEsAvg CVSS Base Score
First CVE
Nov 4, 1997
28 years ago
Most Recent CVE
Dec 31, 2004
7,875 days ago
CVE Severity & Scoring
Vvos14 CVEs
43%
57%
All CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown14 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown14 (100.0%)
User Interaction
None0 (0.0%)
Unknown14 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown14 (100.0%)
Top CVEs
Signals from CVEs in this product scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0492HIGH Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitr | Aug 6, 2004 | 10.0 | 41 | NO | NO |
CVE-2001-1244MEDIUM Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small numb | Jul 7, 2001 | 5.0 | 33 | NO | YES |
CVE-1999-0014HIGH Unauthorized privileged access or denial of service via dtappgather program in CDE. | Jan 21, 1998 | 7.2 | 30 | NO | YES |
CVE-2004-1332HIGH Stack-based buffer overflow in the FTP daemon in HP-UX 11.11i, with the -v (debug) option enabled, allows remote attackers to execute arbitrary code via a long command request. | Dec 31, 2004 | 7.5 | 28 | NO | NO |
CVE-2001-1264HIGH Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges. | Jul 19, 2001 | 10.0 | 27 | NO | NO |
CVE-1999-0306HIGH buffer overflow in HP xlock program. | Nov 4, 1997 | 7.2 | 27 | NO | YES |
CVE-1999-0992HIGH HP VirtualVault with the PHSS_17692 patch allows unprivileged processes to bypass access restrictions via the Trusted Gateway Proxy (TGP). | Jan 18, 2000 | 10.0 | 25 | NO | NO |
CVE-1999-0057HIGH Vacation program allows command execution by remote users through a sendmail command. | Nov 16, 1998 | 7.5 | 23 | NO | NO |
CVE-2002-1408HIGH Unknown vulnerability or vulnerabilities in HP OpenView EMANATE 14.2 snmpModules allow the SNMP read-write community name to be exposed, related to (1) "'read-only' community acces | Apr 11, 2003 | 7.5 | 20 | NO | NO |
CVE-2002-1793MEDIUM HTTP Server mod_ssl module running on HP-UX 11.04 with Virtualvault OS (VVOS) 4.5 through 4.6 closes the connection when the Apache server times out during an SSL request, which ma | Dec 31, 2002 | 5.0 | 15 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (14 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
21.4% of CVEs· 90th percentile
Social Chatter
Signals from CVEs in this product scope (14 CVEs).
Media Mentions
Signals from CVEs in this product scope (14 CVEs).
Top CNAs Publishing CVEs For Vvos
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.5 | 1 | 10.0 | 4.0% | 0 | 0 |
| 4.0 | 1 | 10.0 | 4.0% | 0 | 0 |
| 3.50 | 1 | 5.0 | 1.6% | 0 | 0 |
| 11.04 | 8 | 6.2 | 9.0% | 0 | 1 |
| 10.24 | 5 | 6.3 | 3.1% | 0 | 2 |