Page 5 of 48 results (0.005 seconds)

CVSS: 5.5EPSS: 0%CPEs: 17EXPL: 0

16 May 2002 — xkas in Xinet K-AShare 0.011.01 for IRIX allows local users to read arbitrary files via a symlink attack on the VOLICON file, which is copied to the .HSicon file in a shared directory. xkas en Xinet K-AShare 0.011.01 para IRIX permite a usuarios locales la lectura de ficheros de su elección mediante un ataque por enlace simbólico al fichero VOLICON file, que copia el fichero .HSicon en un directorio compartido. • ftp://patches.sgi.com/support/free/security/advisories/20020604-01-I •

CVSS: 5.0EPSS: 0%CPEs: 21EXPL: 0

12 Apr 2002 — Unknown vulnerability in Mail for SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, when running with the -R option, allows local and remote attackers to cause a core dump. Vulnerabilidad en Mail para SGI IRIX 6.5 a 6.5.15f, y posiblemente versiones anteriores, permite a usuarios locales y remotos causar un volcado del núcleo (core dump). • ftp://patches.sgi.com/support/free/security/advisories/20020401-01-P •

CVSS: 9.8EPSS: 6%CPEs: 21EXPL: 0

03 Apr 2002 — Buffer overflow in SNMP daemon (snmpd) on SGI IRIX 6.5 through 6.5.15m allows remote attackers to execute arbitrary code via an SNMP request. Desbordamiento de buffer en el demonio SNMP (snmpd) en SGI IRIX 6.5 a 6.5.15m permite a atacantes remotos ejecutar código arbitrario mediante mediante peticiones SNMP. • ftp://patches.sgi.com/support/free/security/advisories/20020201-01-P •

CVSS: 7.8EPSS: 0%CPEs: 21EXPL: 0

28 Mar 2002 — Vulnerability in SGI IRIX 6.5.11 through 6.5.15f allows local users to cause privileged applications to dump core via the HOSTALIASES environment variable, which might allow the users to gain privileges. Vulnerabilidad en SGI IRIX 6.5.11 a 6.5.15f permite a usuarios locales producir volcados de núcleo (dump core) a aplicaciones con privilegios mediane la variable de entorno HOSTALIASES, que podría permitir a los usuarios ganar privilegios. • ftp://patches.sgi.com/support/free/security/advisories/20020306-01-P •

CVSS: 7.5EPSS: 0%CPEs: 21EXPL: 0

28 Mar 2002 — rpcbind in SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, allows remote attackers to cause a denial of service (crash) via malformed RPC packets with invalid lengths. rpcbind en SGI IRIX 6.5 a 6.5.15f, y posiblemente en versiones anteriores, permite a atacantes remotos provocar una denegación de servicio (caída) mediante paquetes RPC malformados con longitudes inválidas. • ftp://patches.sgi.com/support/free/security/advisories/20020306-01-P •

CVSS: 10.0EPSS: 1%CPEs: 3EXPL: 0

24 May 2001 — Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings. • http://www.cert.org/advisories/CA-2001-07.html • CWE-131: Incorrect Calculation of Buffer Size •

CVSS: 10.0EPSS: 1%CPEs: 32EXPL: 1

08 Jan 2000 — The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to execute with arbitrary command line arguments, as demonstrated using the -C option to specify a configuration file. • https://www.exploit-db.com/exploits/325 •

CVSS: 10.0EPSS: 1%CPEs: 31EXPL: 1

08 Jan 2000 — The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostname of the local machine to the hostname of the print server as returned by gethostname, which allows remote attackers to bypass intended access controls by modifying the DNS for the attacking IP. • https://www.exploit-db.com/exploits/19722 •