
CVE-1999-0825 – SCO Unixware 7.1 - '/var/mail' Permissions
https://notcve.org/view.php?id=CVE-1999-0825
03 Dec 1999 — The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail. • https://www.exploit-db.com/exploits/19657 •

CVE-1999-0864 – SCO Unixware 7.0/7.0.1/7.1/7.1.1 - 'coredump' Symlink
https://notcve.org/view.php?id=CVE-1999-0864
03 Dec 1999 — UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file. • https://www.exploit-db.com/exploits/19659 •

CVE-1999-0866 – SCO Unixware 7.0/7.0.1/7.1/7.1.1 - 'xauto' Local Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0866
03 Dec 1999 — Buffer overflow in UnixWare xauto program allows local users to gain root privilege. • https://www.exploit-db.com/exploits/19656 •

CVE-1999-0828 – SCO Unixware 7.1 - 'pkg' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0828
02 Dec 1999 — UnixWare pkg commands such as pkginfo, pkgcat, and pkgparam allow local users to read arbitrary files via the dacread permission. • https://www.exploit-db.com/exploits/19658 •

CVE-1999-0942
https://notcve.org/view.php?id=CVE-1999-0942
04 Oct 1999 — UnixWare dos7utils allows a local user to gain root privileges by using the STATICMERGE environmental variable to find a script which it executes. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0942 •

CVE-1999-0836 – SCO Unixware 7.0/7.0.1/7.1/7.1.1 - 'uidadmin' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-1999-0836
02 Dec 1998 — UnixWare uidadmin allows local users to modify arbitrary files via a symlink attack. • https://www.exploit-db.com/exploits/19654 •