Oval Definition:oval:org.mitre.oval:def:767
Revision Date:2010-09-20Version:20
Title:HP-UX ftpd Remote Unauthorized Data Access (B.10.01, B.10.10)
Description:The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-3296
Platform(s):HP-UX 10
Product(s):ftpd
Definition Synopsis
  • InternetSrvcs.INETSVCS-RUN or InternetSrvcs.INET-ENG-A-MAN (B.10.20) is installed
  • InternetSrvcs.INETSVCS-RUN is installed
  • OR InternetSrvcs.INET-ENG-A-MAN is installed
  • OR InternetSrvcs.INETSVCS-RUN is installed
  • OR InternetSrvcs.INET-ENG-A-MAN is installed
  • AND 700 Series or 800 Series OS Release 10.01 or 10.10
  • 700 Series or 800 Series OS Release 10.01
  • 700 Series OS Release 10.01
  • 700-series HP
  • AND HP Release B.10.01
  • OR 800 Series OS Release 10.01
  • 800-series HP
  • AND HP Release B.10.01
  • OR 700 Series or 800 Series OS Release 10.10
  • 700 Series OS Release 10.10
  • 700-series HP
  • AND HP Release B.10.10
  • OR 800 Series OS Release 10.10
  • 800-series HP
  • AND HP Release B.10.10
  • AND NOT Patch PHNE_23947 is installed
  • BACK