Show filters
290 Total Results
Displaying 171-180 of 290
Sort by:
Attacker Value
Unknown

CVE-2002-0517

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Buffer overflow in X11 library (libX11) on Caldera Open UNIX 8.0.0, UnixWare 7.1.1, and possibly other operating systems, allows local users to gain root privileges via a long -xrm argument to programs such as (1) dtterm or (2) xterm.
0
Attacker Value
Unknown

CVE-2002-0532

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
EMU Webmail allows local users to execute arbitrary programs via a .. (dot dot) in the HTTP Host header that points to a Trojan horse configuration file that contains a pageroot specifier that contains shell metacharacters.
0
Attacker Value
Unknown

CVE-2002-0531

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in emumail.cgi in EMU Webmail 4.5.x and 5.1.0 allows remote attackers to read arbitrary files or list arbitrary directories via a .. (dot dot) in the type parameter.
0
Attacker Value
Unknown

CVE-2002-0827

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Vulnerability in pppd on UnixWare 7.1.1 and Open UNIX 8.0.0 allows local users to gain root privileges via (1) ppptalk or (2) ppp, a different vulnerability than CVE-2002-0824.
0
Attacker Value
Unknown

CVE-2002-0678

Disclosure Date: July 23, 2002 (last updated February 22, 2025)
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
0
Attacker Value
Unknown

CVE-2002-0677

Disclosure Date: July 23, 2002 (last updated February 22, 2025)
CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.
0
Attacker Value
Unknown

CVE-2002-0539

Disclosure Date: July 03, 2002 (last updated February 22, 2025)
Demarc PureSecure 1.05 allows remote attackers to gain administrative privileges via a SQL injection attack in a session ID that is stored in the s_key cookie.
0
Attacker Value
Unknown

CVE-2002-0311

Disclosure Date: May 31, 2002 (last updated February 22, 2025)
Vulnerability in webtop in UnixWare 7.1.1 and Open UNIX 8.0.0 allows local and possibly remote attackers to gain root privileges via shell metacharacters in the -c argument for (1) in scoadminreg.cgi or (2) service_action.cgi.
0
Attacker Value
Unknown

CVE-2002-0246

Disclosure Date: May 29, 2002 (last updated February 22, 2025)
Format string vulnerability in the message catalog library functions in UnixWare 7.1.1 allows local users to gain privileges by modifying the LC_MESSAGE environment variable to read other message catalogs containing format strings from setuid programs such as vxprint.
0
Attacker Value
Unknown

CVE-2002-0105

Disclosure Date: March 25, 2002 (last updated February 22, 2025)
CDE dtlogin in Caldera UnixWare 7.1.0, and possibly other operating systems, allows local users to gain privileges via a symlink attack on /var/dt/Xerrors since /var/dt is world-writable.
0