Show filters
22 Total Results
Displaying 1-10 of 22
Sort by:
Attacker Value
Unknown

CVE-2000-0844

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0
Attacker Value
Unknown

CVE-1999-1586

Disclosure Date: December 31, 1999 (last updated February 22, 2025)
loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584.
0
Attacker Value
Unknown

CVE-1999-1584

Disclosure Date: December 31, 1999 (last updated February 22, 2025)
Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environment variables, a different vulnerability than CVE-1999-1586.
0
Attacker Value
Unknown

CVE-1999-0687

Disclosure Date: September 13, 1999 (last updated February 22, 2025)
The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
0
Attacker Value
Unknown

CVE-1999-0691

Disclosure Date: September 13, 1999 (last updated February 22, 2025)
Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.
0
Attacker Value
Unknown

CVE-1999-1297

Disclosure Date: July 15, 1998 (last updated February 22, 2025)
cmdtool in OpenWindows 3.0 and XView 3.0 in SunOS 4.1.4 and earlier allows attackers with physical access to the system to display unechoed characters (such as those from password prompts) via the L2/AGAIN key.
0
Attacker Value
Unknown

CVE-1999-0009

Disclosure Date: April 08, 1998 (last updated February 22, 2025)
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
0
Attacker Value
Unknown

CVE-1999-0003

Disclosure Date: April 01, 1998 (last updated February 22, 2025)
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
0
Attacker Value
Unknown

CVE-1999-0097

Disclosure Date: October 29, 1997 (last updated February 22, 2025)
The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).
0
Attacker Value
Unknown

CVE-1999-0165

Disclosure Date: March 01, 1997 (last updated February 22, 2025)
NFS cache poisoning.
0