Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Solaris HIGH 7.2
CVE-2004-0780

Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument.

Patch available
Fix from $1,950 2004-12-31
Solaris HIGH 7.2
CVE-2004-1767

The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving t…

Patch available
Fix from $1,950 2004-12-31
Solaris HIGH 7.2
CVE-2004-2686

Directory traversal vulnerability in the vfs_getvfssw function in Solaris 2.6, 7, 8, and 9 allows local users to load arbitrary kernel modules via cr…

Patch available
Fix from $1,950 2004-12-31
Solaris MEDIUM 5.0
CVE-2004-1393

Unknown vulnerability in the tcsetattr function for Sun Solaris for SPARC 2.6, 7, and 8 allows local users to cause a denial of service (system hang).

Patch available
Fix from $1,600 2004-12-31
Java System Application Server MEDIUM 5.0
CVE-2004-2216

Unknown vulnerability in Sun Java System Web Server 6.0 SP7 and earlier and 6.1 SP1 and earlier, and Application Server 7 Update 4 and earlier, allow…

Patch available
Fix from $1,600 2004-12-31
Sun Fire MEDIUM 5.0
CVE-2004-2641

Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cause a denial of service (syste…

Patch available
Fix from $1,600 2004-12-31
Solaris HIGH 10.0
CVE-2004-1351EPSS 6%

Unknown vulnerability in the rwho daemon (in.rwhod) for Solaris 7 through 9 allows remote attackers to execute arbitrary code.

Patch available
Fix from $1,950 2004-12-07
Solaris HIGH 7.2
CVE-2004-1352

Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code.

Patch available
Fix from $1,950 2004-12-01
Solaris HIGH 7.2
CVE-2004-0360

Unknown vulnerability in passwd(1) in Solaris 8.0 and 9.0 allows local users to gain privileges via unknown attack vectors.

Patch available
Fix from $1,950 2004-11-23
Java System Web Proxy Server HIGH 7.5
CVE-2004-1350EPSS 8%

Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute a…

Patch available
Fix from $1,950 2004-10-30
Solaris HIGH 7.2
CVE-2004-1353

Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), allows local users to execute certain commands wit…

Patch available
Fix from $1,950 2004-10-19
Solaris MEDIUM 5.0
CVE-2004-1348

Unknown vulnerability in in.named on Solaris 8 allows remote attackers to cause a denial of service (process crash).

Patch available
Fix from $1,600 2004-09-06
Jre MEDIUM 5.0
CVE-2004-0651

Unknown vulnerability in Sun Java Runtime Environment (JRE) 1.4.2 through 1.4.2_03 allows remote attackers to cause a denial of service (virtual mach…

Patch available
Fix from $1,600 2004-08-06
Java System Calendar Server HIGH 10.0
CVE-2004-0742

Sun Java System Portal Server 6.2 (formerly Sun ONE) allows remote authenticated users to obtain Calendar Server privileges and modify Calendar data …

Patch available
Fix from $1,950 2004-07-27
Storedge 3310 Scsi Array HIGH 7.2
CVE-2004-1345

Unknown vulnerability in Sun StorEdge Enterprise Storage Manager (ESM) 2.1 for Solaris 8 and Solaris 9 allows local users with the "ESMUser" role to …

Patch available
Fix from $1,950 2004-06-21
Solaris MEDIUM 5.0
CVE-2004-1354

The Solaris Management Console (SMC) in Sun Solaris 8 and 9 generates different 404 error messages when a file does not exist versus when a file exis…

Patch available
Fix from $1,600 2004-05-14
Patch Manager HIGH 7.5
CVE-2004-1942

The Solaris 9 patches 113579-02 through 113579-05, and 114342-02 through 114342-05, prevent ypserv and ypxfrd from properly restricting access to sec…

Patch available
Fix from $1,950 2004-04-19
Solaris MEDIUM 5.0
CVE-2004-1357

The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, w…

Patch available
Fix from $1,600 2004-04-07
Solaris MEDIUM 5.0
CVE-2004-1358

The patches (1) 114332-08 and (2) 114929-06 for Sun Solaris 9 disable the auditing functionality of the Basic Security Module (BSM), which allows att…

Patch available
Fix from $1,600 2004-03-12
Sunos HIGH 7.2
CVE-2003-1024

Unknown vulnerability in the ls-F builtin function in tcsh on Solaris 8 allows local users to create or delete files as other users, and gain privile…

Patch available
Fix from $1,950 2004-01-20
Solaris HIGH 7.2
CVE-2003-0999

Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or…

Patch available
Fix from $1,950 2004-01-05
Solaris HIGH 7.2
CVE-2003-1076

Unknown vulnerability in sendmail for Solaris 7, 8, and 9 allows local users to cause a denial of service (unknown impact) and possibly gain privileg…

Patch available
Fix from $1,950 2003-12-31
Solaris HIGH 7.2
CVE-2003-1082

Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4705891, a different …

Mitigation only
Fix from $1,950 2003-12-31
Java Plug In MEDIUM 6.8
CVE-2003-1516

The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violat…

No fix yet
Fix from $1,600 2003-12-31
Java Plug In MEDIUM 6.4
CVE-2003-1521EPSS 6%

Sun Java Plug-In 1.4 through 1.4.2_02 allows remote attackers to repeatedly access the floppy drive via the createXmlDocument method in the org.apach…

No fix yet
Fix from $1,600 2003-12-31
Solaris MEDIUM 5.0
CVE-2003-1066

Buffer overflow in the syslog daemon for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (syslogd crash) and possibly exec…

Patch available
Fix from $1,600 2003-12-31
One Directory Server MEDIUM 5.0
CVE-2003-1125

Unknown vulnerability in ns-ldapd for Sun ONE Directory Server 4.16, 5.0, and 5.1 allows LDAP clients to cause a denial of service (service halt).

Patch available
Fix from $1,600 2003-12-31
One Web Server MEDIUM 5.0
CVE-2003-1126

Unknown vulnerability in SunOne/iPlanet Web Server SP3 through SP5 on Windows platforms allows remote attackers to cause a denial of service.

Patch available
Fix from $1,600 2003-12-31
Sun Fire MEDIUM 5.0
CVE-2003-0970

The Network Management Port on Sun Fire B1600 systems allows remote attackers to cause a denial of service (packet loss) via ARP packets, which cause…

Patch available
Fix from $1,600 2003-12-15
Solaris HIGH 7.2
CVE-2003-1056

The ed editor for Sun Solaris 2.6, 7, and 8 allows local users to create or overwrite arbitrary files via a symlink attack on temporary files.

Patch available
Fix from $1,950 2003-12-11