Page 32 of 162 results (0.028 seconds)

CVSS: 2.1EPSS: 0%CPEs: 6EXPL: 0

The asynchronous I/O facility in 4.4 BSD kernel does not check user credentials when setting the recipient of I/O notification, which allows local users to cause a denial of service by using certain ioctl and fcntl calls to cause the signal to be sent to an arbitrary process ID. • http://www.openbsd.com/advisories/signals.txt http://www.osvdb.org/11062 https://exchange.xforce.ibmcloud.com/vulnerabilities/556 • CWE-255: Credentials Management Errors •

CVSS: 5.0EPSS: 0%CPEs: 5EXPL: 0

rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of a file on the server by attempting to mount that file, which generates different error messages depending on whether the file exists or not. • http://www.securityfocus.com/archive/1/7526 https://exchange.xforce.ibmcloud.com/vulnerabilities/347 •

CVSS: 6.4EPSS: 0%CPEs: 4EXPL: 0

Listening TCP ports are sequentially allocated, allowing spoofing attacks. • https://www.cve.org/CVERecord?id=CVE-1999-0074 •

CVSS: 5.0EPSS: 0%CPEs: 4EXPL: 0

The rwho/rwhod service is running, which exposes machine status and user information. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0628 •

CVSS: 10.0EPSS: 0%CPEs: 42EXPL: 1

Buffer overflow of rlogin program using TERM environmental variable. • https://www.exploit-db.com/exploits/19203 https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0046 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •