
CVE-2000-0351
https://notcve.org/view.php?id=CVE-2000-0351
12 Mar 2001 — Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages. • ftp://ftp.sco.com/SSE/security_bulletins/SB-99.09b •

CVE-2000-1014 – Unixware 7.0 - SCOhelp HTTP Server Format String
https://notcve.org/view.php?id=CVE-2000-1014
11 Dec 2000 — Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter. • https://www.exploit-db.com/exploits/20242 •

CVE-2000-0842
https://notcve.org/view.php?id=CVE-2000-0842
18 Oct 2000 — The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack. • http://archives.neohapsis.com/archives/bugtraq/2000-09/0086.html •

CVE-2000-0215
https://notcve.org/view.php?id=CVE-2000-0215
08 Feb 2000 — Vulnerability in SCO cu program in UnixWare 7.x allows local users to gain privileges. • http://www.securityfocus.com/bid/1019 •

CVE-2000-0130
https://notcve.org/view.php?id=CVE-2000-0130
27 Jan 2000 — Buffer overflow in SCO scohelp program allows remote attackers to execute commands. • ftp://ftp.sco.com/SSE/security_bulletins/SB-00.02a •

CVE-2000-0099
https://notcve.org/view.php?id=CVE-2000-0099
18 Jan 2000 — Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument. • http://marc.info/?l=bugtraq&m=94848865112897&w=2 •

CVE-1999-0979 – SCO Unixware 7.0/7.0.1/7.1/7.1.1 - Privileged Program Debugging
https://notcve.org/view.php?id=CVE-1999-0979
04 Jan 2000 — The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed. • https://www.exploit-db.com/exploits/19674 •

CVE-1999-0988 – SCO Unixware 7.1 pkginstall - Local Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0988
04 Dec 1999 — UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack. • https://www.exploit-db.com/exploits/19661 •

CVE-1999-0825 – SCO Unixware 7.1 - '/var/mail' Permissions
https://notcve.org/view.php?id=CVE-1999-0825
03 Dec 1999 — The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail. • https://www.exploit-db.com/exploits/19657 •

CVE-1999-0864 – SCO Unixware 7.0/7.0.1/7.1/7.1.1 - 'coredump' Symlink
https://notcve.org/view.php?id=CVE-1999-0864
03 Dec 1999 — UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file. • https://www.exploit-db.com/exploits/19659 •