CVE-2016-4380
- EPSS 0.27%
- Published 08.09.2016 16:59:03
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the AdminUI in HPE Operations Manager 9.21.x before 9.21.130 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CVE-2016-4373
- EPSS 1.84%
- Published 01.08.2016 02:59:13
- Last modified 12.04.2025 10:46:40
The AdminUI in HPE Operations Manager (OM) before 9.21.130 on Linux, Unix, and Solaris allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections (ACC) library.
- EPSS 2.41%
- Published 30.01.2016 15:59:09
- Last modified 12.04.2025 10:46:40
HPE Operations Manager 8.x and 9.0 on Windows allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.
- EPSS 22.35%
- Published 10.10.2014 01:55:08
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in HP Operations Manager 9.10 and 9.11 on UNIX allows remote attackers to execute arbitrary code via unknown vectors.
CVE-2014-2649
- EPSS 3.62%
- Published 10.10.2014 01:55:08
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in HP Operations Manager 9.20 on UNIX allows remote attackers to execute arbitrary code via unknown vectors.
CVE-2010-1033
- EPSS 22.59%
- Published 21.04.2010 14:30:01
- Last modified 11.04.2025 00:51:21
Multiple stack-based buffer overflows in a certain Tetradyne ActiveX control in HP Operations Manager 7.5, 8.10, and 8.16 might allow remote attackers to execute arbitrary code via a long string argument to the (1) LoadFile or (2) SaveFile method, re...
- EPSS 83.49%
- Published 03.12.2009 17:30:02
- Last modified 09.04.2025 00:30:58
HP Operations Manager has a default password of OvW*busr1 for the ovwebusr account, which allows remote attackers to execute arbitrary code via a session that uses the manager role to conduct unrestricted file upload attacks against the /manager serv...
- EPSS 86.83%
- Published 24.11.2009 00:30:00
- Last modified 09.04.2025 00:30:58
HP Operations Manager 8.10 on Windows contains a "hidden account" in the XML file that specifies Tomcat users, which allows remote attackers to conduct unrestricted file upload attacks, and thereby execute arbitrary code, by using the org.apache.cata...
- EPSS 4.28%
- Published 08.09.2009 18:30:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in HP OpenView Operations Manager 8.1 on Windows Server 2003 SP2 allows remote attackers to have an unknown impact, related to a "Remote exploit," as demonstrated by a certain module in VulnDisco Pack Professional 8.11, a di...