The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, w…
Buffer overflow in IBM Net.Data db2www CGI program allows remote attackers to execute arbitrary commands via a long PATH_INFO environmental variable.
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_error routine.
IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack.
IBM WebSphere sets permissions that allow a local user to modify a deinstallation script or its data files stored in /usr/bin.
Denial of service in BIND named via malformed SIG records.
genfilt in the AIX Packet Filtering Module does not properly filter traffic to destination ports greater than 32767.
Buffer overflow in AIX ftpd in the libc library.
Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler.
IBM Netfinity Remote Control allows local users to gain administrator privileges by starting programs from the process manager, which runs with syste…
The Lotus Notes 4.5 client may send a copy of encrypted mail in the clear across the network if the user does not set the "Encrypt Saved Mail" prefer…
snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when s…
netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.
AIX infod allows local users to gain root access through an X display.
IRIX and AIX automountd services (autofsd) allow remote users to execute root commands.
IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permissions (world-readable and wor…
IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the…
Buffer overflows in Sun libnsl allow root access.
inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passin…
Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.
AIX routed allows remote users to modify sensitive files.
Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.
Various vulnerabilities in the AIX portmir command allows local users to obtain root access.
AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.
Buffer overflow in AIX libDtSvc library can allow local users to gain root access.
Buffer overflow in AIX writesrv command allows local users to obtain root access.
Buffer overflow in AIX xdat gives root access to local users.
Buffer overflow in AIX rcp command allows local users to obtain root access.