| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Denial of service by sending forged ICMP unreachable packets. |
| The BSD profil system call allows a local user to modify the internal data space of a program via profiling and execve. |
| Guessable magic cookies in X Windows allows remote attackers to execute commands, e.g. through xterm. |
| Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user's passwords by reading log files. |
| Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages. |
| The SunView (SunTools) selection_svc facility allows remote users to read files. |
| A hidden SNMP community string in HP OpenView allows remote attackers to modify MIB tables and obtain sensitive information. |
| nis_cachemgr for Solaris NIS+ allows attackers to add malicious NIS+ servers. |
| vold in Solaris 2.x allows local users to gain root access. |
| Sun/Solaris utmp file allows local users to gain root access if it is writable by users other than root. |
| The Java Applet Security Manager implementation in Netscape Navigator 2.0 and Java Developer's Kit 1.0 allows an applet to connect to arbitrary hosts. |
| Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands. |
| Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems. |
| pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call. |
| In Solaris, an SNMP subagent has a default community string that allows remote attackers to execute arbitrary commands as root, or modify system parameters. |
| Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError and (2) AdminAddadmin via a direct request. |
| Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases. |
| DNS cache poisoning via BIND, by predictable query IDs. |
| Directory traversal vulnerability in ASTAware SearchDisk engine for Sun ONE Starter Kit 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack on port (1) 6015 or (2) 6016, or (3) an absolute pathname to port 6017. |
| Unknown vulnerability in SunOne/iPlanet Web Server SP3 through SP5 on Windows platforms allows remote attackers to cause a denial of service. |