Page 3 of 83 results (0.004 seconds)

CVSS: 5.5EPSS: 0%CPEs: 8EXPL: 1

22 Sep 1999 — The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable and a symlink attack. • https://www.exploit-db.com/exploits/19509 •

CVSS: 9.8EPSS: 7%CPEs: 33EXPL: 0

13 Sep 1999 — The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192 •

CVSS: 7.8EPSS: 0%CPEs: 28EXPL: 1

13 Sep 1999 — Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name. • https://www.exploit-db.com/exploits/19497 •

CVSS: 7.2EPSS: 0%CPEs: 27EXPL: 2

09 Aug 1999 — The BSD profil system call allows a local user to modify the internal data space of a program via profiling and execve. • https://www.exploit-db.com/exploits/19447 •

CVSS: 10.0EPSS: 5%CPEs: 9EXPL: 2

01 Jul 1999 — Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd). • https://www.exploit-db.com/exploits/19420 •

CVSS: 7.8EPSS: 0%CPEs: 30EXPL: 1

09 Jun 1999 — The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing. • https://www.exploit-db.com/exploits/19255 •

CVSS: 9.1EPSS: 6%CPEs: 8EXPL: 1

07 Jun 1999 — rpc.statd allows remote attackers to forward RPC calls to the local operating system via the SM_MON and SM_NOTIFY commands, which in turn could be used to remotely exploit other bugs such as in automountd. • https://www.exploit-db.com/exploits/19327 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

01 Mar 1999 — Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry. • http://sunsolve.Sun.COM/pub-cgi/retrieve.pl?patchid=103291&collection=fpatches •

CVSS: 7.5EPSS: 0%CPEs: 9EXPL: 0

10 Feb 1999 — In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files. • http://www.securityfocus.com/bid/165 •

CVSS: 7.5EPSS: 0%CPEs: 9EXPL: 0

17 Dec 1998 — The passwd command in Solaris can be subjected to a denial of service. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/182 •