159 results (0.007 seconds)

CVSS: 10.0EPSS: 26%CPEs: 45EXPL: 1

20 May 2010 — Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCplus B.11.31_09 and earlier on HP HP-UX B.11.11, B.11.23, and B.11.31; and SGI IRIX 6.5 allows remote attackers to execute arbitrary code via an RPC request containing format string specifiers in an invalid directory name. Vulnerabilidad de cadena de formato en la función _msgout en rpc.pcnfsd en AIX de IBM versiones 6.1, 5.3 y anteriores; VIOS de IBM versiones 2.1, 1.5 ... • https://www.exploit-db.com/exploits/14407 • CWE-134: Use of Externally-Controlled Format String •

CVSS: 7.1EPSS: 0%CPEs: 100EXPL: 2

08 Apr 2005 — gr_osview in SGI IRIX does not drop privileges before opening files, which allows local users to overwrite arbitrary files via the -s option. • https://www.exploit-db.com/exploits/25362 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

14 Jan 2005 — inpview in SGI IRIX allows local users to execute arbitrary commands via the SUN_TTSESSION_CMD environment variable, which is executed by inpview without dropping privileges. • http://secunia.com/advisories/13858 •

CVSS: 7.5EPSS: 0%CPEs: 8EXPL: 0

31 Dec 2004 — Unknown vulnerability in ftpd in SGI IRIX 6.5.20 through 6.5.23 allows remote attackers to cause a denial of service (hang) via a link failure with Microsoft Windows. • ftp://patches.sgi.com/support/free/security/advisories/20040401-01-P.asc •

CVSS: 9.1EPSS: 0%CPEs: 1EXPL: 0

31 Dec 2004 — The ftp_syslog function in ftpd in SGI IRIX 6.5.20 "doesn't work with anonymous FTP," which has an unknown impact, possibly preventing the actions of anonymous users from being logged. • ftp://patches.sgi.com/support/free/security/advisories/20040401-01-P.asc •

CVSS: 7.8EPSS: 0%CPEs: 103EXPL: 0

23 Jun 2004 — The syssgi SGI_IOPROBE system call in IRIX 6.5.20 through 6.5.24 allows local users to gain privileges by reading and writing to kernel memory. La llamada de sistema syssgi SGI_IOPROVE en IRIX 6.5.20 a 6.5.24 permite a usuarios locales ganar privilegios leyendo y escribiendo en la memoria del kernel. • ftp://patches.sgi.com/support/free/security/advisories/20040601-01-P.asc •

CVSS: 5.5EPSS: 0%CPEs: 8EXPL: 0

23 Jun 2004 — The mapelf32exec function call in IRIX 6.5.20 through 6.5.24 allows local users to cause a denial of service (system crash) via a "corrupted binary." La llamada a la función mapelf32exec en IRIX 6.5.20 6.5.24 permite a usuarios locales causar una denegación de servicio (caída del sistema) mediante un "binario corrupto". • ftp://patches.sgi.com/support/free/security/advisories/20040601-01-P.asc •

CVSS: 5.5EPSS: 0%CPEs: 8EXPL: 0

23 Jun 2004 — Unknown vulnerability in init for IRIX 6.5.20 through 6.5.24 allows local users to cause a denial of service (system panic) as a result of "page invalidation issues." Vulnerabilidad desconocida en init de IRIX 6.5.20 A 6.5.24 permite a usuarios locales causar una denegación de servicio (pánico de sistema) como resultado de "problemas con invalidación de página". • ftp://patches.sgi.com/support/free/security/advisories/20040601-01-P.asc •

CVSS: 7.8EPSS: 0%CPEs: 103EXPL: 0

03 Jun 2004 — cpr (libcpr) in SGI IRIX before 6.5.25 allows local users to gain privileges by loading a user provided library while restarting the checkpointed process. cpr (libcpr) en SGI IRIX anteriores a 6.5.25 permite a usuarios locales ganar privilegios cargando una librería suminstrada por el usuario mientras se reinicia el proceso con punto de comprobación. • ftp://patches.sgi.com/support/free/security/advisories/20040507-01-P.asc •

CVSS: 9.1EPSS: 0%CPEs: 28EXPL: 0

05 May 2004 — ifconfig "-arp" in SGI IRIX 6.5 through 6.5.22m does not properly disable ARP requests from being sent or received. • ftp://patches.sgi.com/support/free/security/advisories/20040502-01-P.asc •