Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2004-0780 Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument. Solaris Patch available Fix from $1,9502004-12-31 HIGH 7.2 CVE-2004-1767 The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving t… Solaris Patch available Fix from $1,9502004-12-31 HIGH 7.2 CVE-2004-2686 Directory traversal vulnerability in the vfs_getvfssw function in Solaris 2.6, 7, 8, and 9 allows local users to load arbitrary kernel modules via cr… Solaris Patch available Fix from $1,9502004-12-31 MEDIUM 5.0 CVE-2004-1393 Unknown vulnerability in the tcsetattr function for Sun Solaris for SPARC 2.6, 7, and 8 allows local users to cause a denial of service (system hang). Solaris Patch available Fix from $1,6002004-12-31 MEDIUM 5.0 CVE-2004-2216 Unknown vulnerability in Sun Java System Web Server 6.0 SP7 and earlier and 6.1 SP1 and earlier, and Application Server 7 Update 4 and earlier, allow… Java System Application Server Patch available Fix from $1,6002004-12-31 MEDIUM 5.0 CVE-2004-2641 Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cause a denial of service (syste… Sun Fire Patch available Fix from $1,6002004-12-31 HIGH 10.0 CVE-2004-1351EPSS 6% Unknown vulnerability in the rwho daemon (in.rwhod) for Solaris 7 through 9 allows remote attackers to execute arbitrary code. Solaris Patch available Fix from $1,9502004-12-07 HIGH 7.2 CVE-2004-1352 Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code. Solaris Patch available Fix from $1,9502004-12-01 HIGH 7.2 CVE-2004-0360 Unknown vulnerability in passwd(1) in Solaris 8.0 and 9.0 allows local users to gain privileges via unknown attack vectors. Solaris Patch available Fix from $1,9502004-11-23 HIGH 7.5 CVE-2004-1350EPSS 8% Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute a… Java System Web Proxy Server Patch available Fix from $1,9502004-10-30 HIGH 7.2 CVE-2004-1353 Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), allows local users to execute certain commands wit… Solaris Patch available Fix from $1,9502004-10-19 MEDIUM 5.0 CVE-2004-1348 Unknown vulnerability in in.named on Solaris 8 allows remote attackers to cause a denial of service (process crash). Solaris Patch available Fix from $1,6002004-09-06 MEDIUM 5.0 CVE-2004-0651 Unknown vulnerability in Sun Java Runtime Environment (JRE) 1.4.2 through 1.4.2_03 allows remote attackers to cause a denial of service (virtual mach… Jre Patch available Fix from $1,6002004-08-06 HIGH 10.0 CVE-2004-0742 Sun Java System Portal Server 6.2 (formerly Sun ONE) allows remote authenticated users to obtain Calendar Server privileges and modify Calendar data … Java System Calendar Server Patch available Fix from $1,9502004-07-27 HIGH 7.2 CVE-2004-1345 Unknown vulnerability in Sun StorEdge Enterprise Storage Manager (ESM) 2.1 for Solaris 8 and Solaris 9 allows local users with the "ESMUser" role to … Storedge 3310 Scsi Array Patch available Fix from $1,9502004-06-21 MEDIUM 5.0 CVE-2004-1354 The Solaris Management Console (SMC) in Sun Solaris 8 and 9 generates different 404 error messages when a file does not exist versus when a file exis… Solaris Patch available Fix from $1,6002004-05-14 HIGH 7.5 CVE-2004-1942 The Solaris 9 patches 113579-02 through 113579-05, and 114342-02 through 114342-05, prevent ypserv and ypxfrd from properly restricting access to sec… Patch Manager Patch available Fix from $1,9502004-04-19 MEDIUM 5.0 CVE-2004-1357 The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, w… Solaris Patch available Fix from $1,6002004-04-07 MEDIUM 5.0 CVE-2004-1358 The patches (1) 114332-08 and (2) 114929-06 for Sun Solaris 9 disable the auditing functionality of the Basic Security Module (BSM), which allows att… Solaris Patch available Fix from $1,6002004-03-12 HIGH 7.2 CVE-2003-1024 Unknown vulnerability in the ls-F builtin function in tcsh on Solaris 8 allows local users to create or delete files as other users, and gain privile… Sunos Patch available Fix from $1,9502004-01-20 HIGH 7.2 CVE-2003-0999 Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or… Solaris Patch available Fix from $1,9502004-01-05 HIGH 7.2 CVE-2003-1076 Unknown vulnerability in sendmail for Solaris 7, 8, and 9 allows local users to cause a denial of service (unknown impact) and possibly gain privileg… Solaris Patch available Fix from $1,9502003-12-31 HIGH 7.2 CVE-2003-1082 Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4705891, a different … Solaris Mitigation only Fix from $1,9502003-12-31 MEDIUM 6.8 CVE-2003-1516 The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violat… Java Plug In No fix yet Fix from $1,6002003-12-31 MEDIUM 6.4 CVE-2003-1521EPSS 6% Sun Java Plug-In 1.4 through 1.4.2_02 allows remote attackers to repeatedly access the floppy drive via the createXmlDocument method in the org.apach… Java Plug In No fix yet Fix from $1,6002003-12-31 MEDIUM 5.0 CVE-2003-1066 Buffer overflow in the syslog daemon for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (syslogd crash) and possibly exec… Solaris Patch available Fix from $1,6002003-12-31 MEDIUM 5.0 CVE-2003-1125 Unknown vulnerability in ns-ldapd for Sun ONE Directory Server 4.16, 5.0, and 5.1 allows LDAP clients to cause a denial of service (service halt). One Directory Server Patch available Fix from $1,6002003-12-31 MEDIUM 5.0 CVE-2003-1126 Unknown vulnerability in SunOne/iPlanet Web Server SP3 through SP5 on Windows platforms allows remote attackers to cause a denial of service. One Web Server Patch available Fix from $1,6002003-12-31 MEDIUM 5.0 CVE-2003-0970 The Network Management Port on Sun Fire B1600 systems allows remote attackers to cause a denial of service (packet loss) via ARP packets, which cause… Sun Fire Patch available Fix from $1,6002003-12-15 HIGH 7.2 CVE-2003-1056 The ed editor for Sun Solaris 2.6, 7, and 8 allows local users to create or overwrite arbitrary files via a symlink attack on temporary files. Solaris Patch available Fix from $1,9502003-12-11