Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2001-0124 Buffer overflow in exrecover in Solaris 2.6 and earlier possibly allows local users to gain privileges via a long command line argument. Solaris Patch available Fix from $1,9502001-03-12 MEDIUM 6.2 CVE-2001-0059 patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack. Sunos Mitigation only Fix from $1,6002001-02-12 MEDIUM 5.0 CVE-2001-0077 The clustmon service in Sun Cluster 2.x does not require authentication, which allows remote attackers to obtain sensitive information such as system… Cluster Mitigation only Fix from $1,6002001-02-12 MEDIUM 5.0 CVE-2000-0958 HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window. Hotjava Browser Patch available Fix from $1,6002000-12-19 HIGH 10.0 CVE-2000-0697EPSS 11% The administration interface for the dwhttpd web server in Solaris AnswerBook2 allows interface users to remotely execute commands via shell metachar… Solaris Answerbook2 Patch available Fix from $1,9502000-10-20 HIGH 7.5 CVE-2000-0696EPSS 7% The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts,… Solaris Answerbook2 Patch available Fix from $1,9502000-10-20 HIGH 7.2 CVE-2000-0471 Buffer overflow in ufsrestore in Solaris 8 and earlier allows local users to gain root privileges via a long pathname. Solaris Patch available Fix from $1,9502000-06-14 HIGH 7.5 CVE-2000-0431 Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to … Cobalt Raq 2 Patch available Fix from $1,9502000-05-22 HIGH 7.2 CVE-2000-0407 Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option. Solaris Mitigation only Fix from $1,9502000-05-12 HIGH 7.2 CVE-2000-0316 Buffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option. Solaris Mitigation only Fix from $1,9502000-04-24 HIGH 7.2 CVE-2000-0317 Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option. Solaris Patch available Fix from $1,9502000-04-24 HIGH 7.2 CVE-2000-0337 Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter. Solaris Mitigation only Fix from $1,9502000-04-24 MEDIUM 5.0 CVE-2000-0234EPSS 7% The default configuration of Cobalt RaQ2 and RaQ3 as specified in access.conf allows remote attackers to view sensitive contents of a .htaccess file. Cobalt Raq 2 Mitigation only Fix from $1,6002000-03-31 HIGH 10.0 CVE-2000-0175 Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command. Staroffice Mitigation only Fix from $1,9502000-03-09 MEDIUM 5.0 CVE-2000-0174EPSS 6% StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. Staroffice Mitigation only Fix from $1,6002000-03-09 HIGH 7.2 CVE-2000-0164 The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords. Solaris Isp Server No fix yet Fix from $1,9502000-02-20 HIGH 7.2 CVE-2000-0117 The siteUserMod.cgi program in Cobalt RaQ2 servers allows any Site Administrator to modify passwords for other users, site administrators, and possib… Cobalt Raq Mitigation only Fix from $1,9502000-01-30 HIGH 7.2 CVE-2000-0055 Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option. Solaris Mitigation only Fix from $1,9502000-01-06 HIGH 10.0 CVE-1999-1584 Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Op… Openwindows Patch available Fix from $1,9501999-12-31 CRITICAL 9.8 CVE-1999-1588EPSS 10% Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string beg… Solaris No fix yet Fix from $2,3001999-12-31 HIGH 7.2 CVE-1999-1585 The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the… Sunos Patch available Fix from $1,9501999-12-31 HIGH 7.2 CVE-1999-1586 loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vul… Sunos Patch available Fix from $1,9501999-12-31 HIGH 10.0 CVE-2000-0032 Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database. Solaris Mitigation only Fix from $1,9501999-12-22 MEDIUM 5.0 CVE-2000-0030 Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database. Solaris Mitigation only Fix from $1,6001999-12-22 HIGH 10.0 CVE-1999-0977EPSS 13% Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request. Solaris Mitigation only Fix from $1,9501999-12-10 HIGH 10.0 CVE-1999-0974 Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service. Solaris Mitigation only Fix from $1,9501999-12-09 HIGH 10.0 CVE-1999-0973 Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode. Solaris Mitigation only Fix from $1,9501999-12-07 HIGH 7.2 CVE-1999-0982 The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable file. Web Based Enterprise Management Mitigation only Fix from $1,9501999-12-05 HIGH 7.2 CVE-1999-0840 Buffer overflow in CDE dtmail and dtmailpr programs allows local users to gain privileges via a long -f option. Sunos Mitigation only Fix from $1,9501999-11-30 HIGH 7.2 CVE-1999-0841 Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type. Sunos Mitigation only Fix from $1,9501999-11-30