
CVE-2006-4319
https://notcve.org/view.php?id=CVE-2006-4319
24 Aug 2006 — Buffer overflow in the format command in Solaris 8, 9, and 10 allows local users with access to format (such as the "File System Management" RBAC profile) to execute arbitrary code via unknown vectors, a different vulnerability than CVE-2006-4307. Desbordamiento de búfer en el comando format en Solaris 8, 9, y 10 permite a usuarios locales con acceso a format (tales y como el perfil RBAC "File System Management") ejecutar código de su elección a través de vectores desconocidos, una vulnerabilidad distinta d... • http://secunia.com/advisories/21581 •

CVE-2006-4306
https://notcve.org/view.php?id=CVE-2006-4306
23 Aug 2006 — Unspecified vulnerability in Sun Solaris 8 and 9 before 20060821 allows local users to execute arbitrary commands via unspecified vectors, involving the default Role-Based Access Control (RBAC) settings in the "File System Management" profile. Vulnerabilidad no especificada en Sun Solaris 8 y 9 versiones anteriores a 20060821 permite a atacantes remotos ejecutar sentencias de su elección mediante vectores sin especificar, involucrando la configuración del Control de Acceso por defecto basado en rol (RBAC) e... • http://secunia.com/advisories/21581 •

CVE-2006-4307
https://notcve.org/view.php?id=CVE-2006-4307
23 Aug 2006 — Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local users to modify arbitrary files via unspecified vectors involving profiles that permit running format with elevated privileges, a different issue than CVE-2006-4306 and CVE-2006-4319. Vulnerabilidad no especificada en el comando de formato en Sun Solaris 8 y 9 anterior a 21/08/2006 permite a un usuario local modificar archivos de su elección a través de vectores no especificados que afectan al perfil que perm... • http://secunia.com/advisories/21581 •

CVE-2006-3664
https://notcve.org/view.php?id=CVE-2006-3664
17 Jul 2006 — Unspecified vulnerability in NIS server on Sun Solaris 8, 9, and 10 allows local and remote attackers to cause a denial of service (ypserv hang) via unknown vectors. Vulnerabilidad no especificada en el servidor NIS sobre Sun Solaris 8, 9, y 10 permite a atacantes locales y remotos provocar denegación de servicio (culegue del ypserv) a través de vectores desconocidos. • http://secunia.com/advisories/21047 •

CVE-2006-0901
https://notcve.org/view.php?id=CVE-2006-0901
27 Feb 2006 — Unspecified vulnerability in the hsfs filesystem in Solaris 8, 9, and 10 allows unspecified attackers to cause a denial of service (panic) or execute arbitrary code. • http://secunia.com/advisories/19042 •

CVE-2005-4797 – Solaris LPD Arbitrary File Delete
https://notcve.org/view.php?id=CVE-2005-4797
31 Dec 2005 — Directory traversal vulnerability in printd line printer daemon (lpd) in Solaris 7 through 10 allows remote attackers to delete arbitrary files via ".." sequences in an "Unlink data file" command. • https://packetstorm.news/files/id/180500 •

CVE-2005-4796
https://notcve.org/view.php?id=CVE-2005-4796
31 Dec 2005 — Unspecified vulnerability in the XView library (libxview.so) in Solaris 2.5 to 10 allows local users to corrupt files via unknown vectors related to the handling of the clipboard selection while an XView application exits. • http://sunsolve.sun.com/search/document.do?assetkey=1-26-100881-1 •

CVE-2005-2072 – Solaris 9/10 - 'ld.so' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-2005-2072
29 Jun 2005 — The runtime linker (ld.so) in Solaris 8, 9, and 10 trusts the LD_AUDIT environment variable in setuid or setgid programs, which allows local users to gain privileges by (1) modifying LD_AUDIT to reference malicious code and possibly (2) using a long value for LD_AUDIT. • https://www.exploit-db.com/exploits/1073 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2005-2032
https://notcve.org/view.php?id=CVE-2005-2032
16 Jun 2005 — Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files. • http://secunia.com/advisories/15723 •

CVE-2005-1591
https://notcve.org/view.php?id=CVE-2005-1591
16 May 2005 — Unknown vulnerability in NIS+ on Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (rpc.nisd disabled and NIS+ unavailable) via unknown vectors. • http://sunsolve.sun.com/search/document.do?assetkey=1-26-57780-1 •