Show filters
212 Total Results
Displaying 181-190 of 212
Sort by:
Attacker Value
Unknown
CVE-2002-0678
Disclosure Date: July 23, 2002 (last updated February 22, 2025)
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
0
Attacker Value
Unknown
CVE-2002-0677
Disclosure Date: July 23, 2002 (last updated February 22, 2025)
CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.
0
Attacker Value
Unknown
CVE-2002-0572
Disclosure Date: July 03, 2002 (last updated February 22, 2025)
FreeBSD 4.5 and earlier, and possibly other BSD-based operating systems, allows local users to write to or read from restricted files by closing the file descriptors 0 (standard input), 1 (standard output), or 2 (standard error), which may then be reused by a called setuid process that intended to perform I/O on normal files.
0
Attacker Value
Unknown
CVE-2002-0573
Disclosure Date: July 03, 2002 (last updated February 22, 2025)
Format string vulnerability in RPC wall daemon (rpc.rwalld) for Solaris 2.5.1 through 8 allows remote attackers to execute arbitrary code via format strings in a message that is not properly provided to the syslog function when the wall command cannot be executed.
0
Attacker Value
Unknown
CVE-2001-1503
Disclosure Date: December 31, 2001 (last updated February 22, 2025)
The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows remote attackers to list all accounts on a host by typing finger 'a b c d e f g h'@host.
0
Attacker Value
Unknown
CVE-2001-1582
Disclosure Date: December 31, 2001 (last updated February 22, 2025)
Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users to execute arbitrary code via a long LDAP_OPTIONS environment variable to a privileged program that uses libsldap.
0
Attacker Value
Unknown
CVE-2001-1555
Disclosure Date: December 31, 2001 (last updated February 22, 2025)
pt_chmod in Solaris 8 does not call fdetach to reset terminal privileges when users log out of terminals, which allows local users to write to other users' terminals by modifying the ACL of a TTY.
0
Attacker Value
Unknown
CVE-2001-0797
Disclosure Date: December 12, 2001 (last updated February 22, 2025)
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin.
0
Attacker Value
Unknown
CVE-2001-0779
Disclosure Date: October 18, 2001 (last updated February 22, 2025)
Buffer overflow in rpc.yppasswdd (yppasswd server) in Solaris 2.6, 7 and 8 allows remote attackers to gain root access via a long username.
0
Attacker Value
Unknown
CVE-2001-1414
Disclosure Date: October 09, 2001 (last updated February 22, 2025)
The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access, which allows remote attackers to hide their activities, possibly when certain BSM audit files are not present under the FTP root.
0