Search: "sun"

1458 CVEs found

The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable file.

Published: 1999-12-05
Products: 3
Vendors:
sun

lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 ...

Published: 1999-12-31
Products: 4
Vendors:
sgi sun apple bsd
CVE-1999-1584
10.0 HIGH

Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root pri...

Published: 1999-12-31
Products: 5
Vendors:
sun

The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with phy...

Published: 1999-12-31
Products: 1
Vendors:
sun

loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584.

Published: 1999-12-31
Products: 4
Vendors:
sun

/usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to view the environment variables and values of arbitrary processes via the -e option.

Published: 1999-12-31
Products: 2
Vendors:
sun
CVE-1999-1588
9.8 CRITICAL

Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string beginning with "NLPS:002:002:" to the listen (aka Syst...

Published: 1999-12-31
Products: 3
Vendors:
sun

Multiple unspecified vulnerabilities in sendmail 5, as installed on Sun SunOS 4.1.3_U1 and 4.1.4, have unspecified attack vectors and impact. NOTE: this might overlap CVE-1999-0129.

Published: 1999-12-31
Products: 3
Vendors:
sun sendmail

The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords.

Published: 2000-02-20
Products: 1
Vendors:
sun

The lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary files.

Published: 2000-02-21
Products: 1
Vendors:
sun

The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling th...

Published: 2000-07-12
Products: 2
Vendors:
sun
CVE-2000-0812
10.0 HIGH

The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServ...

Published: 2000-11-14
Products: 4
Vendors:
sun
CVE-2000-0855
5.0 MEDIUM

SunFTP build 9(1) allows remote attackers to cause a denial of service by connecting to the server and disconnecting before sending a newline.

Published: 2000-11-14
Products: 1
Vendors:
xs4all_data

Buffer overflow in SunFTP build 9(1) allows remote attackers to cause a denial of service or possibly execute arbitrary commands via a long GET request.

Published: 2000-11-14
Products: 1
Vendors:
xs4all_data
CVE-2000-0889
5.1 MEDIUM

Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun.

Published: 2001-02-12
Products: 0
CVE-2001-0077
5.0 MEDIUM

The clustmon service in Sun Cluster 2.x does not require authentication, which allows remote attackers to obtain sensitive information such as system logs and cluster configurations.

Published: 2001-02-12
Products: 1
Vendors:
sun

in.mond in Sun Cluster 2.x allows local users to read arbitrary files via a symlink attack on the status file of a host running HA-NFS.

Published: 2001-02-12
Products: 1
Vendors:
sun
CVE-2001-0283
6.4 MEDIUM

Directory traversal vulnerability in SunFTP build 9 allows remote attackers to read arbitrary files via .. (dot dot) characters in various commands, including (1) GET, (2) MKDIR, (3) RMDIR, (4) RENAME...

Published: 2001-05-03
Products: 1
Vendors:
sun

ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generated by another user, which the attacker can use to decrypt that user's private key...

Published: 2001-06-02
Products: 4
Vendors:
ssh

Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.

Published: 2001-07-05
Products: 10
Vendors:
sun