Show filters
569 Total Results
Displaying 201-210 of 569
Sort by:
Attacker Value
Unknown

CVE-2008-5550

Disclosure Date: December 12, 2008 (last updated October 04, 2023)
Open redirect vulnerability in console/faces/jsp/login/BeginLogin.jsp in Sun Java Web Console 3.0.2 through 3.0.5 and Solaris 10 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the redirect_url parameter.
0
Attacker Value
Unknown

CVE-2008-4619

Disclosure Date: October 21, 2008 (last updated October 04, 2023)
The RPC subsystem in Sun Solaris 9 allows remote attackers to cause a denial of service (daemon crash) via a crafted request to procedure 8 in program 100000 (rpcbind), related to the XDR_DECODE operation and the taddr2uaddr function. NOTE: this might be a duplicate of CVE-2007-0165.
0
Attacker Value
Unknown

CVE-2008-3666

Disclosure Date: August 13, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Sun Solaris 10 and OpenSolaris before snv_96 allows (1) context-dependent attackers to cause a denial of service (panic) via vectors involving creation of a crafted file and use of the sendfilev system call, as demonstrated by a file served by an Apache 2.2.x web server with EnableSendFile configured; and (2) local users to cause a denial of service (panic) via a call to the sendfile system call, as reachable through the sendfilev library.
0
Attacker Value
Unknown

CVE-2008-0965

Disclosure Date: August 08, 2008 (last updated October 04, 2023)
Multiple format string vulnerabilities in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via format string specifiers in an SMB packet.
0
Attacker Value
Unknown

CVE-2008-0964

Disclosure Date: August 08, 2008 (last updated October 04, 2023)
Multiple stack-based buffer overflows in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via a crafted SMB packet.
0
Attacker Value
Unknown

CVE-2008-3450

Disclosure Date: August 04, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the namefs kernel module in Sun Solaris 8 through 10 allows local users to gain privileges or cause a denial of service (panic) via unspecified vectors.
0
Attacker Value
Unknown

CVE-2008-3426

Disclosure Date: July 31, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the Solaris Platform Information and Control Library daemon (picld) in Sun Solaris 8 through 10, and OpenSolaris builds snv_01 through snv_95, allows local users to cause a denial of service via unknown vectors that prevent operation of utilities such as prtdiag, prtpicl, and prtfru.
0
Attacker Value
Unknown

CVE-2008-2946

Disclosure Date: June 30, 2008 (last updated October 04, 2023)
The SNMP-DMI mapper subagent daemon (aka snmpXdmid) in Solstice Enterprise Agents in Sun Solaris 8 through 10 allows remote attackers to cause a denial of service (daemon crash) via malformed packets.
0
Attacker Value
Unknown

CVE-2008-2710

Disclosure Date: June 16, 2008 (last updated October 04, 2023)
Integer signedness error in the ip_set_srcfilter function in the IP Multicast Filter in uts/common/inet/ip/ip_multi.c in the kernel in Sun Solaris 10 and OpenSolaris before snv_92 allows local users to execute arbitrary code in other Solaris Zones via an SIOCSIPMSFILTER IOCTL request with a large value of the imsf->imsf_numsrc field, which triggers an out-of-bounds write of kernel memory. NOTE: this was reported as an integer overflow, but the root cause involves the bypass of a signed comparison.
0
Attacker Value
Unknown

CVE-2008-2708

Disclosure Date: June 16, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the Sun (1) UltraSPARC T2 and (2) UltraSPARC T2+ kernel modules in Sun Solaris 10, and OpenSolaris before snv_93, allows local users to cause a denial of service (panic) via unspecified vectors, probably related to core files.
0