Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2003-1057 Unknown vulnerability in CDE Print Viewer (dtprintinfo) for Sun Solaris 2.6 through 9 may allow local users to execute arbitrary code. Solaris Patch available Fix from $1,9502003-12-08 HIGH 7.2 CVE-2003-1059 Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9 allows local users to gain root access. Solaris Patch available Fix from $1,9502003-11-20 MEDIUM 5.0 CVE-2003-1060 The NFS Server for Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (UFS panic) via certain invalid UFS requests, which trigg… Solaris Patch available Fix from $1,6002003-10-27 HIGH 10.0 CVE-2003-0722EPSS 89% The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attackers to spoof Solstice AdminSu… Solaris Mitigation only Fix from $1,9502003-09-22 HIGH 10.0 CVE-2003-1081 Aspppls for Solaris 8 allows local users to overwrite arbitrary files via a symlink attack on the .asppp.fifo temporary file. Solaris Patch available Fix from $1,9502003-09-09 HIGH 7.2 CVE-2003-0609 Stack-based buffer overflow in the runtime linker, ld.so.1, on Solaris 2.6 through 9 allows local users to gain root privileges via a long LD_PRELOAD… Solaris Mitigation only Fix from $1,9502003-08-27 MEDIUM 5.0 CVE-2003-0676 Directory traversal vulnerability in ViewLog for iPlanet Administration Server 5.1 (aka Sun ONE) allows remote attackers to read arbitrary files via … Iplanet Directory Server Mitigation only Fix from $1,6002003-08-27 HIGH 7.5 CVE-2003-1063 The patches (1) 105693-13, (2) 108800-02, (3) 105694-13, and (4) 108801-02 for cachefs on Solaris 2.6 and 7 overwrite the inetd.conf file, which may … Solaris Patch available Fix from $1,9502003-08-20 HIGH 7.2 CVE-2003-1055 Buffer overflow in the nss_ldap.so.1 library for Sun Solaris 8 and 9 may allow local users to gain root access via a long hostname in an LDAP lookup. Solaris Patch available Fix from $1,9502003-07-03 HIGH 7.2 CVE-2003-0414 The installation of Sun ONE Application Server 7.0 for Windows 2000/XP creates a statefile with world-readable permissions, which allows local users … One Application Server Mitigation only Fix from $1,9502003-06-30 MEDIUM 6.8 CVE-2003-0413EPSS 7% Cross-site scripting (XSS) vulnerability in the webapps-simple sample application for (1) Sun ONE Application Server 7.0 for Windows 2000/XP or (2) S… One Application Server Patch available Fix from $1,6002003-06-30 MEDIUM 5.0 CVE-2003-0412 Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide m… One Application Server Patch available Fix from $1,6002003-06-30 HIGH 7.2 CVE-2003-1067 Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local us… Solaris Patch available Fix from $1,9502003-06-19 HIGH 7.2 CVE-2003-1068 Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different … Solaris Patch available Fix from $1,9502003-06-06 MEDIUM 5.0 CVE-2003-1069 The Telnet daemon (in.telnetd) for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (CPU consumption by infinite loop). Solaris Patch available Fix from $1,6002003-06-03 MEDIUM 5.0 CVE-2003-1070 Unknown vulnerability in rpcbind for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (rpcbind crash). Solaris Patch available Fix from $1,6002003-04-28 HIGH 7.2 CVE-2003-0091 Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local users to gain root privilege. Solaris Patch available Fix from $1,9502003-04-02 HIGH 7.2 CVE-2003-0092 Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment va… Solaris Patch available Fix from $1,9502003-04-02 HIGH 7.2 CVE-2003-1074 Unknown vulnerability in newtask for Solaris 9 allows local users to gain root privileges. Solaris Patch available Fix from $1,9502003-03-28 HIGH 7.5 CVE-2002-0387 Buffer overflow in gxnsapi6.dll NSAPI plugin of the Connector Module for Sun ONE Application Server before 6.5 allows remote attackers to execute arb… One Application Server Patch available Fix from $1,9502003-03-18 HIGH 7.5 CVE-2003-1078 The FTP client for Solaris 2.6, 7, and 8 with the debug (-d) flag enabled displays the user password on the screen during login. Solaris Patch available Fix from $1,9502003-02-28 MEDIUM 5.0 CVE-2003-1079 Unknown vulnerability in UDP RPC for Solaris 2.5.1 through 9 for SPARC, and 2.5.1 through 8 for x86, allows remote attackers to cause a denial of ser… Solaris Patch available Fix from $1,6002003-02-18 MEDIUM 5.0 CVE-2003-0027EPSS 26% Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read ar… Solaris Patch available Fix from $1,6002003-02-07 MEDIUM 5.0 CVE-2003-1075 Unknown vulnerability in the FTP server (in.ftpd) for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (temporary FTP serve… Solaris Patch available Fix from $1,6002003-01-27 HIGH 10.0 CVE-2002-2374 Unspecified vulnerability in pprosetup in Sun PatchPro 2.0 has unknown impact and attack vectors related to "unsafe use of temporary files." Patchpro Patch available Fix from $1,9502002-12-31 HIGH 10.0 CVE-2002-2425 Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError and (2) AdminAddadmin via a di… Solaris Answerbook2 Patch available Fix from $1,9502002-12-31 HIGH 7.5 CVE-2002-2005 Unknown vulnerability in Java web start 1.0.1_01, 1.0.1, 1.0 and 1.0.1.01 (HP-UX 11.x only) allows attackers to gain access to restricted resources v… Java Web Start Patch available Fix from $1,9502002-12-31 HIGH 7.5 CVE-2002-2036 Sun Ray Server Software (SRSS) 1.3, when Non-Smartcard Mobility (NSCM) is enabled, allows remote attackers to login as another user by running dtlogi… Ray Server Software Patch available Fix from $1,9502002-12-31 HIGH 7.5 CVE-2002-2323 Sun PC NetLink 1.0 through 1.2 does not properly set the access control list (ACL) for files and directories that use symbolic links and have been re… Solaris Pc Netlink after 1.2 Fix from $1,9502002-12-31 HIGH 7.2 CVE-2002-1871 pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner,… Solaris Patch available Fix from $1,9502002-12-31