Search: "cray"

14 CVEs found

Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounting configuration.

Published: 1999-12-31
Products: 2
Vendors:
cray

Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gain root privileges by using qsub to submit a batch job whose name contains f...

Published: 2002-01-31
Products: 2
Vendors:
cray sgi

Multiple buffer overflows in Cray UNICOS 9.0.2.2 might allow local users to gain privileges by (1) invoking /usr/bin/script with a long command line argument or (2) setting the -c option of /etc/nu to...

Published: 2006-01-11
Products: 1
Vendors:
cray

apinit on Cray devices with CLE before 4.2.UP02 and 5.x before 5.1.UP00 does not use alpsauth data to validate the UID in a launch message, which allows local users to gain privileges via a modified a...

Published: 2014-12-27
Products: 2
Vendors:
cray
CVE-2016-10893
6.1 MEDIUM

The crayon-syntax-highlighter plugin before 2.8.4 for WordPress has multiple XSS issues via AJAX requests.

Published: 2019-08-20
Products: 1
Vendors:
crayon_syntax_highlighter_project

An issue was discovered in the crayon crate through 2020-08-31 for Rust. A TOCTOU issue has a resultant memory safety violation via HandleLike.

Published: 2020-12-31
Products: 1
Vendors:
crayon_project
CVE-2022-28620
9.8 CRITICAL

A remote authentication bypass vulnerability was discovered in HPE Cray Legacy Shasta System Solutions; HPE Slingshot; and HPE Cray EX supercomputers versions: Prior to node controller firmware associ...

Published: 2022-06-24
Products: 18
Vendors:
hpe
CVE-2022-47167
5.4 MEDIUM

Cross-Site Request Forgery (CSRF) vulnerability in Aram Kocharyan Crayon Syntax Highlighter plugin <= 2.8.4 versions.

Published: 2023-05-22
Products: 1
Vendors:
crayon_syntax_highlighter_project
CVE-2023-4893
6.4 MEDIUM

The Crayon Syntax Highlighter plugin for WordPress is vulnerable to Server Side Request Forgery via the 'crayon' shortcode in versions up to, and including, 2.8.4. This can allow authenticated attacke...

Published: 2023-09-12
Products: 1
Vendors:
aramk
CVE-2024-22441
9.8 CRITICAL

HPE Cray Parallel Application Launch Service (PALS) is subject to an authentication bypass.

Published: 2024-06-13
Products: 2
Vendors:
hpe
CVE-2024-51765
5.5 MEDIUM

A security vulnerability has been identified in HPE Cray Data Virtualization Service (DVS). Depending on configuration, this vulnerability may lead to local/cluster unauthorized access.

Published: 2024-11-15
Products: 0
CVE-2025-25286
9.8 CRITICAL

Crayfish is a collection of Islandora 8 microservices, one of which, Homarus, provides FFmpeg as a microservice. Prior to Crayfish version 4.1.0, remote code execution may be possible in web-accessibl...

Published: 2025-02-13
Products: 0
CVE-2025-27087
5.5 MEDIUM

A vulnerability in the kernel of the Cray Operating System (COS) could allow an attacker to perform a local Denial of Service (DoS) attack.

Published: 2025-04-22
Products: 0
CVE-2025-37088
6.8 MEDIUM

A security vulnerability has been identified in HPE Cray Data Virtualization Service (DVS). Depending on race conditions and configuration, this vulnerability may lead to local/cluster unauthorized ac...

Published: 2025-04-22
Products: 0