
CVE-2001-0576 – SCO Open Server 5.0.6 - lpusers Buffer Overflow
https://notcve.org/view.php?id=CVE-2001-0576
27 Jul 2001 — lpusers as included with SCO OpenServer 5.0 through 5.0.6 allows a local attacker to gain additional privileges via a buffer overflow attack in the '-u' command line parameter. • https://www.exploit-db.com/exploits/20739 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2001-0577 – SCO Open Server 5.0.6 - recon Buffer Overflow
https://notcve.org/view.php?id=CVE-2001-0577
27 Jul 2001 — recon in SCO OpenServer 5.0 through 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first command line argument. • https://www.exploit-db.com/exploits/20742 •

CVE-2001-0578 – SCO Open Server 5.0.6 - lpforms Buffer Overflow
https://notcve.org/view.php?id=CVE-2001-0578
27 Jul 2001 — Buffer overflow in lpforms in SCO OpenServer 5.0-5.0.6 can allow a local attacker to gain additional privileges via a long first argument to the lpforms command. • https://www.exploit-db.com/exploits/20736 •

CVE-2001-0579 – SCO OpenServer 5.0.6 - lpadmin Buffer Overflow
https://notcve.org/view.php?id=CVE-2001-0579
27 Jul 2001 — lpadmin in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first argument to the command. • https://www.exploit-db.com/exploits/20735 •

CVE-2001-1148
https://notcve.org/view.php?id=CVE-2001-1148
13 Jun 2001 — Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local users to gain privileges via a long TERM environment variable to (1) atcronsh, (2) auditsh, (3) authsh, (4) backupsh, (5) lpsh, (6) sysadm.menu, or (7) termsh. • http://www.securityfocus.com/archive/1/219966 •

CVE-2000-0306 – SCO UNIX 5 calserver - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-0306
12 Mar 2001 — Buffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long message. • https://www.exploit-db.com/exploits/20620 •

CVE-2000-0307
https://notcve.org/view.php?id=CVE-2000-0307
12 Mar 2001 — Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024. • ftp://ftp.sco.com/SSE/security_bulletins/SB-99.07b •

CVE-1999-0368 – WU-FTPD 2.4.2 / SCO Open Server 5.0.5 / ProFTPd 1.2 pre1 - 'realpath' Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0368
09 Feb 1999 — Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. • https://www.exploit-db.com/exploits/19086 •

CVE-1999-1450
https://notcve.org/view.php?id=CVE-1999-1450
27 Jan 1999 — Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1 and earlier, allows remote attackers to gain privileges. • ftp://ftp.sco.COM/SSE/sse020.ltr •

CVE-1999-0017
https://notcve.org/view.php?id=CVE-1999-0017
10 Dec 1997 — FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0017 •