8 results (0.006 seconds)

CVSS: 7.5EPSS: 0%CPEs: 4EXPL: 0

03 Sep 2003 — Docview before 1.1-18 in Caldera OpenLinux 3.1.1, SCO Linux 4.0, OpenServer 5.0.7, configures the Apache web server in a way that allows remote attackers to read arbitrary publicly readable files via a certain URL, possibly related to rewrite rules. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2003-0658 •

CVSS: 5.5EPSS: 2%CPEs: 9EXPL: 0

28 Oct 2002 — The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments. El procedimiento getdbm en ypxfrd permite a usuarios locales leer ficheros arbitrarios, y a atacantes remotos leer bases de datos fuera de /var/yp, mediante ataques de atravesamiento de directorios y de enlaces simbólicos en los argumentos de dominio y mapa. • ftp://ftp.caldera.com/pub/updates/OpenServer/CSSA-2002-SCO.40 •

CVSS: 5.5EPSS: 0%CPEs: 2EXPL: 1

04 Oct 2002 — scoadmin for Caldera/SCO OpenServer 5.0.5 and 5.0.6 allows local users to overwrite arbitrary files via a symlink attack on temporary files, as demonstrated using log files. • https://www.exploit-db.com/exploits/21489 •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

26 Jul 2002 — Buffer overflow in dlvr_audit for Caldera OpenServer 5.0.5 and 5.0.6 allows local users to gain root privileges. • ftp://stage.caldera.com/pub/security/openserver/CSSA-2002-SCO.8/CSSA-2002-SCO.8.txt •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

01 May 2002 — Buffer overflow in sar for OpenServer 5.0.5 allows local users to gain root privileges via a long -o parameter. • ftp://stage.caldera.com/pub/security/openserver/CSSA-2002-SCO.17/CSSA-2002-SCO.17.txt •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

31 Aug 2001 — Buffer overflow in mana in OpenServer 5.0.6a and earlier allows local users to execute arbitrary code. • ftp://stage.caldera.com/pub/security/openserver/CSSA-2001-SCO.12/CSSA-2001-SCO.12.txt •

CVSS: 10.0EPSS: 48%CPEs: 17EXPL: 2

09 Feb 1999 — Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. • https://www.exploit-db.com/exploits/19086 •

CVSS: 9.1EPSS: 1%CPEs: 32EXPL: 0

10 Dec 1997 — FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0017 •