Show filters
19 Total Results
Displaying 11-19 of 19
Sort by:
Attacker Value
Unknown
CVE-2001-0134
Disclosure Date: March 12, 2001 (last updated February 22, 2025)
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.
0
Attacker Value
Unknown
CVE-2000-1134
Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
0
Attacker Value
Unknown
CVE-2000-0844
Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0
Attacker Value
Unknown
CVE-1999-1041
Disclosure Date: August 27, 1998 (last updated February 22, 2025)
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a long TERM environmental variable and (2) a long entry in the .mscreenrc file.
0
Attacker Value
Unknown
CVE-1999-0011
Disclosure Date: April 08, 1998 (last updated February 22, 2025)
Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
0
Attacker Value
Unknown
CVE-1999-0010
Disclosure Date: April 08, 1998 (last updated February 22, 2025)
Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
0
Attacker Value
Unknown
CVE-1999-0017
Disclosure Date: December 10, 1997 (last updated February 22, 2025)
FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
0
Attacker Value
Unknown
CVE-1999-0024
Disclosure Date: August 13, 1997 (last updated February 22, 2025)
DNS cache poisoning via BIND, by predictable query IDs.
0
Attacker Value
Unknown
CVE-1999-0073
Disclosure Date: October 13, 1995 (last updated February 22, 2025)
Telnet allows a remote client to specify environment variables including LD_LIBRARY_PATH, allowing an attacker to bypass the normal system libraries and gain root access.
0