Oval Definition:
oval:org.mitre.oval:def:5779
Revision Date
:
2014-03-24
Version
:
20
Title
:
HP-UX Running logins(1M), Remote Unauthorized Access
Description
:
The logins command in HP-UX B.11.31, B.11.23, and B.11.11 does not correctly report password status, which allows remote attackers to obtain privileges when certain "password issues" are not detected.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2007-5008
Platform(s)
:
HP-UX 11
Product(s)
:
Definition Synopsis
Criteria meets HP Security Bulletin HPSBUX02259
HP-UX B.11.11
AND
SOE.SOE is installed
AND
NOT
Patch PHCO_36809 is installed
OR
Criteria meets HP Security Bulletin HPSBUX02259
HP-UX B.11.31
AND
SOE.SOE is installed
AND
NOT
Patch PHCO_36003 is installed
OR
Criteria meets HP Security Bulletin HPSBUX02259
HP-UX B.11.23
AND
SOE.SOE is installed
AND
NOT
Patch PHCO_36808 is installed
BACK