Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-0952

EPSS 1.65% · P82
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-0952

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
HP-UX B.11.00 through B.11.23, when running Ignite-UX and using the add_new_client command, causes the TFTP server to set world-writable permissions on part of the directory tree, which allows remote attackers to modify data or cause disk consumption.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
HP Ignite-UX TFTP文件上传漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Ignite-UX产品是一套 HP-UX 管理工具集,可协助远程恢复、监控客户机安装等各种任务。 Ignite-UX的TFTP在处理文件路径时存在漏洞,远程攻击者可能利用此漏洞非法获得文件系统的访问。 在安装过程中Ignite-UX会安装并启用TFTP服务程序以便于匿名访问配置数据。在某些环境中,部分TFTP服务器树可能是完全可写的,这就允许攻击者从主机移动数据/工具,或通过写满本地文件系统导致主机拒绝服务。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-0952

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-0952

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-08-19 · 36 CVEs total

CVE-2005-2525Mac OS X CUPS 拒绝服务攻击漏洞
CVE-2005-2516Mac OS X Safari浏览器访问控制漏洞
CVE-2005-2517OpenSSL SSL握手NULL指针拒绝服务攻击漏洞
CVE-2005-2518Mac OS X servermgrd缓冲区溢出漏洞
CVE-2005-2519Mac OS X Directory 服务器slpd 权限提升漏洞
CVE-2005-2520Mac OS X 密码助理 密码泄露漏洞
CVE-2005-2521OpenSSL SSL握手NULL指针拒绝服务攻击漏洞
CVE-2005-2522Mac OS X WebKit Safari浏览器 任意代码执行漏洞
CVE-2005-2523Mac OS X Weblog Server多个跨站脚本攻击漏洞
CVE-2005-2515Mac OS X Quartz Composer屏保密码绕过漏洞
CVE-2005-2526Mac OS X CPUS 拒绝服务漏洞
CVE-2005-2621ECW-Shop 'index.php' SQL注入漏洞
CVE-2005-2622ECW-Shop 'index.php' 跨站脚本漏洞
CVE-2005-2623ECW-Shop数字错误漏洞
CVE-2005-2624CPAINT 多个eval注入漏洞
CVE-2005-2625CPAINT 'checkBlacklist'函数 不完整黑名单漏洞
CVE-2005-2626Kismet 多个未明漏洞
CVE-2005-2627Kismet 多个整数溢出
CVE-2005-2507Mac OS X Directory Services缓冲区溢出漏洞
CVE-2004-0951HP Ignite-UX TFTP口令文件泄露漏洞

Showing top 20 of 36 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2004-0952

No comments yet


Leave a comment