Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Solaris HIGH 7.2
CVE-2003-1057

Unknown vulnerability in CDE Print Viewer (dtprintinfo) for Sun Solaris 2.6 through 9 may allow local users to execute arbitrary code.

Patch available
Fix from $1,950 2003-12-08
Solaris HIGH 7.2
CVE-2003-1059

Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9 allows local users to gain root access.

Patch available
Fix from $1,950 2003-11-20
Solaris MEDIUM 5.0
CVE-2003-1060

The NFS Server for Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (UFS panic) via certain invalid UFS requests, which trigg…

Patch available
Fix from $1,600 2003-10-27
Solaris HIGH 10.0
CVE-2003-0722EPSS 89%

The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attackers to spoof Solstice AdminSu…

Mitigation only
Fix from $1,950 2003-09-22
Solaris HIGH 10.0
CVE-2003-1081

Aspppls for Solaris 8 allows local users to overwrite arbitrary files via a symlink attack on the .asppp.fifo temporary file.

Patch available
Fix from $1,950 2003-09-09
Solaris HIGH 7.2
CVE-2003-0609

Stack-based buffer overflow in the runtime linker, ld.so.1, on Solaris 2.6 through 9 allows local users to gain root privileges via a long LD_PRELOAD…

Mitigation only
Fix from $1,950 2003-08-27
Iplanet Directory Server MEDIUM 5.0
CVE-2003-0676

Directory traversal vulnerability in ViewLog for iPlanet Administration Server 5.1 (aka Sun ONE) allows remote attackers to read arbitrary files via …

Mitigation only
Fix from $1,600 2003-08-27
Solaris HIGH 7.5
CVE-2003-1063

The patches (1) 105693-13, (2) 108800-02, (3) 105694-13, and (4) 108801-02 for cachefs on Solaris 2.6 and 7 overwrite the inetd.conf file, which may …

Patch available
Fix from $1,950 2003-08-20
Solaris HIGH 7.2
CVE-2003-1055

Buffer overflow in the nss_ldap.so.1 library for Sun Solaris 8 and 9 may allow local users to gain root access via a long hostname in an LDAP lookup.

Patch available
Fix from $1,950 2003-07-03
One Application Server HIGH 7.2
CVE-2003-0414

The installation of Sun ONE Application Server 7.0 for Windows 2000/XP creates a statefile with world-readable permissions, which allows local users …

Mitigation only
Fix from $1,950 2003-06-30
One Application Server MEDIUM 6.8
CVE-2003-0413EPSS 7%

Cross-site scripting (XSS) vulnerability in the webapps-simple sample application for (1) Sun ONE Application Server 7.0 for Windows 2000/XP or (2) S…

Patch available
Fix from $1,600 2003-06-30
One Application Server MEDIUM 5.0
CVE-2003-0412

Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide m…

Patch available
Fix from $1,600 2003-06-30
Solaris HIGH 7.2
CVE-2003-1067

Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local us…

Patch available
Fix from $1,950 2003-06-19
Solaris HIGH 7.2
CVE-2003-1068

Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different …

Patch available
Fix from $1,950 2003-06-06
Solaris MEDIUM 5.0
CVE-2003-1069

The Telnet daemon (in.telnetd) for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (CPU consumption by infinite loop).

Patch available
Fix from $1,600 2003-06-03
Solaris MEDIUM 5.0
CVE-2003-1070

Unknown vulnerability in rpcbind for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (rpcbind crash).

Patch available
Fix from $1,600 2003-04-28
Solaris HIGH 7.2
CVE-2003-0091

Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local users to gain root privilege.

Patch available
Fix from $1,950 2003-04-02
Solaris HIGH 7.2
CVE-2003-0092

Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment va…

Patch available
Fix from $1,950 2003-04-02
Solaris HIGH 7.2
CVE-2003-1074

Unknown vulnerability in newtask for Solaris 9 allows local users to gain root privileges.

Patch available
Fix from $1,950 2003-03-28
One Application Server HIGH 7.5
CVE-2002-0387

Buffer overflow in gxnsapi6.dll NSAPI plugin of the Connector Module for Sun ONE Application Server before 6.5 allows remote attackers to execute arb…

Patch available
Fix from $1,950 2003-03-18
Solaris HIGH 7.5
CVE-2003-1078

The FTP client for Solaris 2.6, 7, and 8 with the debug (-d) flag enabled displays the user password on the screen during login.

Patch available
Fix from $1,950 2003-02-28
Solaris MEDIUM 5.0
CVE-2003-1079

Unknown vulnerability in UDP RPC for Solaris 2.5.1 through 9 for SPARC, and 2.5.1 through 8 for x86, allows remote attackers to cause a denial of ser…

Patch available
Fix from $1,600 2003-02-18
Solaris MEDIUM 5.0
CVE-2003-0027EPSS 26%

Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read ar…

Patch available
Fix from $1,600 2003-02-07
Solaris MEDIUM 5.0
CVE-2003-1075

Unknown vulnerability in the FTP server (in.ftpd) for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (temporary FTP serve…

Patch available
Fix from $1,600 2003-01-27
Patchpro HIGH 10.0
CVE-2002-2374

Unspecified vulnerability in pprosetup in Sun PatchPro 2.0 has unknown impact and attack vectors related to "unsafe use of temporary files."

Patch available
Fix from $1,950 2002-12-31
Solaris Answerbook2 HIGH 10.0
CVE-2002-2425

Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError and (2) AdminAddadmin via a di…

Patch available
Fix from $1,950 2002-12-31
Java Web Start HIGH 7.5
CVE-2002-2005

Unknown vulnerability in Java web start 1.0.1_01, 1.0.1, 1.0 and 1.0.1.01 (HP-UX 11.x only) allows attackers to gain access to restricted resources v…

Patch available
Fix from $1,950 2002-12-31
Ray Server Software HIGH 7.5
CVE-2002-2036

Sun Ray Server Software (SRSS) 1.3, when Non-Smartcard Mobility (NSCM) is enabled, allows remote attackers to login as another user by running dtlogi…

Patch available
Fix from $1,950 2002-12-31
Solaris Pc Netlink HIGH 7.5
CVE-2002-2323

Sun PC NetLink 1.0 through 1.2 does not properly set the access control list (ACL) for files and directories that use symbolic links and have been re…

Fix: after 1.2
Fix from $1,950 2002-12-31
Solaris HIGH 7.2
CVE-2002-1871

pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner,…

Patch available
Fix from $1,950 2002-12-31