Page 92 of 559 results (0.013 seconds)

CVSS: 10.0EPSS: 0%CPEs: 74EXPL: 13

Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. • https://www.exploit-db.com/exploits/20187 https://www.exploit-db.com/exploits/209 https://www.exploit-db.com/exploits/215 https://www.exploit-db.com/exploits/249 https://www.exploit-db.com/exploits/20185 https://www.exploit-db.com/exploits/210 https://www.exploit-db.com/exploits/20188 https://www.exploit-db.com/exploits/20186 https://www.exploit-db.com/exploits/197 https://www.exploit-db.com/exploits/20189 https://www.exploit-db.com/exploits/20190 ftp: • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 7.5EPSS: 3%CPEs: 4EXPL: 2

The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts, which allows remote attackers to add user accounts to the interface by directly calling the admin CGI script. • https://www.exploit-db.com/exploits/20144 http://archives.neohapsis.com/archives/sun/2000-q3/0001.html http://seclists.org/bugtraq/2000/Aug/0105.html http://www.s21sec.com/en/avisos/s21sec-004-en.txt http://www.securityfocus.com/bid/1554 https://exchange.xforce.ibmcloud.com/vulnerabilities/5069 •

CVSS: 10.0EPSS: 0%CPEs: 4EXPL: 2

The administration interface for the dwhttpd web server in Solaris AnswerBook2 allows interface users to remotely execute commands via shell metacharacters. • https://www.exploit-db.com/exploits/20146 http://archives.neohapsis.com/archives/sun/2000-q3/0001.html http://seclists.org/bugtraq/2000/Aug/0105.html http://www.iss.net/security_center/static/5058.php http://www.s21sec.com/en/avisos/s21sec-004-en.txt http://www.securityfocus.com/bid/1556 •

CVSS: 7.2EPSS: 0%CPEs: 26EXPL: 2

Buffer overflow in ufsrestore in Solaris 8 and earlier allows local users to gain root privileges via a long pathname. • https://www.exploit-db.com/exploits/20014 http://archives.neohapsis.com/archives/bugtraq/2000-06/0114.html http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/210 http://www.kb.cert.org/vuls/id/36866 http://www.osvdb.org/1398 http://www.securityfocus.com/bid/1348 https://exchange.xforce.ibmcloud.com/vulnerabilities/4711 •

CVSS: 7.2EPSS: 0%CPEs: 6EXPL: 2

Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option. • https://www.exploit-db.com/exploits/19910 https://www.exploit-db.com/exploits/19911 http://archives.neohapsis.com/archives/bugtraq/2000-05/0141.html http://www.securityfocus.com/bid/1200 •