Page 2 of 32 results (0.003 seconds)

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

12 Mar 2001 — Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages. • ftp://ftp.sco.com/SSE/security_bulletins/SB-99.09b •

CVSS: 9.8EPSS: 8%CPEs: 1EXPL: 2

11 Dec 2000 — Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter. • https://www.exploit-db.com/exploits/20242 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

18 Oct 2000 — The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack. • http://archives.neohapsis.com/archives/bugtraq/2000-09/0086.html •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

08 Feb 2000 — Vulnerability in SCO cu program in UnixWare 7.x allows local users to gain privileges. • http://www.securityfocus.com/bid/1019 •

CVSS: 9.8EPSS: 0%CPEs: 3EXPL: 0

27 Jan 2000 — Buffer overflow in SCO scohelp program allows remote attackers to execute commands. • ftp://ftp.sco.com/SSE/security_bulletins/SB-00.02a •

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 0

18 Jan 2000 — Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument. • http://marc.info/?l=bugtraq&m=94848865112897&w=2 •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 1

04 Jan 2000 — The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed. • https://www.exploit-db.com/exploits/19674 •

CVSS: 7.2EPSS: 0%CPEs: 8EXPL: 1

04 Dec 1999 — UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack. • https://www.exploit-db.com/exploits/19661 •

CVSS: 7.1EPSS: 0%CPEs: 3EXPL: 1

03 Dec 1999 — The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail. • https://www.exploit-db.com/exploits/19657 •

CVSS: 7.2EPSS: 0%CPEs: 4EXPL: 1

03 Dec 1999 — UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file. • https://www.exploit-db.com/exploits/19659 •