The clustmon service in Sun Cluster 2.x does not require authentication, which allows remote attackers to obtain sensitive information such as system…
Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option.
Buffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option.
Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter.
The default configuration of Cobalt RaQ2 and RaQ3 as specified in access.conf allows remote attackers to view sensitive contents of a .htaccess file.
Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command.
StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords.
The siteUserMod.cgi program in Cobalt RaQ2 servers allows any Site Administrator to modify passwords for other users, site administrators, and possib…
Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option.
Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string beg…
Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database.
Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database.
Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request.
Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service.
Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode.
The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable file.
Buffer overflow in CDE dtmail and dtmailpr programs allows local users to gain privileges via a long -f option.
Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type.
Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable.
Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result of recursive calls to mutex_en…
Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable.
The default configuration of Cobalt RaQ2 servers allows remote users to install arbitrary software packages.
Buffer overflow in Solaris lpset program allows local users to gain root access.
Buffer overflow in Solaris dtprintinfo program.
Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the terminal name argument.
The cancel command in Solaris 2.6 (i386) has a buffer overflow that allows local users to obtain root access.
Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the we…
Buffer overflow in Solaris lpstat via class argument allows local users to gain root access.
rpc.admind in Solaris is not running in a secure mode.