Page 52 of 619 results (0.009 seconds)

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 1

14 Aug 2001 — Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable. • https://www.exploit-db.com/exploits/21024 •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 4

02 Aug 2001 — kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument. • https://www.exploit-db.com/exploits/20740 •

CVSS: 10.0EPSS: 0%CPEs: 6EXPL: 0

21 Jul 2001 — Buffer overflow in the line printer daemon (in.lpd) for Solaris 8 and earlier allows local and remote attackers to gain root privileges via a "transfer job" routine. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/206 •

CVSS: 7.8EPSS: 0%CPEs: 10EXPL: 2

05 Jul 2001 — Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable. • https://www.exploit-db.com/exploits/20974 •

CVSS: 7.8EPSS: 1%CPEs: 1EXPL: 3

02 Jul 2001 — Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093. • https://www.exploit-db.com/exploits/20751 •

CVSS: 7.8EPSS: 0%CPEs: 7EXPL: 3

02 Jul 2001 — Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable. • https://www.exploit-db.com/exploits/20743 •

CVSS: 7.8EPSS: 0%CPEs: 6EXPL: 2

24 May 2001 — Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via a long LANG environmental variable. • https://www.exploit-db.com/exploits/20766 •

CVSS: 6.4EPSS: 2%CPEs: 2EXPL: 2

24 May 2001 — FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition. • https://www.exploit-db.com/exploits/20764 •

CVSS: 10.0EPSS: 1%CPEs: 3EXPL: 0

24 May 2001 — Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings. • http://www.cert.org/advisories/CA-2001-07.html • CWE-131: Incorrect Calculation of Buffer Size •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 1

24 May 2001 — Buffer overflow in tip in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable. • https://www.exploit-db.com/exploits/20684 •