Page 7 of 96 results (0.002 seconds)

CVSS: 9.8EPSS: 7%CPEs: 4EXPL: 1

01 Sep 1997 — The handler CGI program in IRIX allows arbitrary command execution. • https://www.exploit-db.com/exploits/19303 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 2

20 Aug 1997 — spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed. • https://www.exploit-db.com/exploits/19357 •

CVSS: 7.3EPSS: 0%CPEs: 4EXPL: 0

14 Jul 1997 — IRIX fam service allows an attacker to obtain a list of all files on the server. • http://www.osvdb.org/164 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 7.8EPSS: 0%CPEs: 8EXPL: 0

28 May 1997 — Vulnerability in runtime linker program rld in SGI IRIX 6.x and earlier allows local users to gain privileges via setuid and setgid programs. • ftp://patches.sgi.com/support/free/security/advisories/19970504-01-PX •

CVSS: 8.4EPSS: 0%CPEs: 8EXPL: 2

26 May 1997 — IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files. • https://www.exploit-db.com/exploits/336 • CWE-434: Unrestricted Upload of File with Dangerous Type •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

16 May 1997 — Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program. • http://marc.info/?l=bugtraq&m=87602167420994&w=2 •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 1

09 May 1997 — addnetpr in SGI IRIX 6.2 and earlier allows local users to modify arbitrary files and possibly gain root access via a symlink attack on a temporary file. • https://www.exploit-db.com/exploits/19260 •

CVSS: 7.8EPSS: 0%CPEs: 10EXPL: 2

09 May 1997 — addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file. • https://www.exploit-db.com/exploits/19260 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

07 May 1997 — SGI MachineInfo CGI program, installed by default on some web servers, prints potentially sensitive system status information, which could be used by remote attackers for information gathering activities. • http://marc.info/?l=bugtraq&m=87602167420919&w=2 •

CVSS: 7.8EPSS: 0%CPEs: 14EXPL: 2

07 May 1997 — Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack. • https://www.exploit-db.com/exploits/19358 •