HP HP-UX B.11.11, B.11.23, and B.11.31, when the PAM configuration includes libpam_updbe, allows remote authenticated users to bypass authentication, and consequently execute arbitrary code, via unspecified vectors.
2014-12-10T21:59:13.320
2025-04-12T10:46:40.837
Deferred
CVSSv2: 8.5 (HIGH)
AV:N/AC:M/Au:S/C:C/I:C/A:C
6.8
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | hp | hp-ux | b.11.11 | Yes |
| Operating System | hp | hp-ux | b.11.23 | Yes |
| Operating System | hp | hp-ux | b.11.31 | Yes |