Show filters
71 Total Results
Displaying 61-70 of 71
Sort by:
Attacker Value
Unknown
CVE-2002-0039
Disclosure Date: March 28, 2002 (last updated February 22, 2025)
rpcbind in SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, allows remote attackers to cause a denial of service (crash) via malformed RPC packets with invalid lengths.
0
Attacker Value
Unknown
CVE-2001-0247
Disclosure Date: June 18, 2001 (last updated February 22, 2025)
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functions glob2 and glob3.
0
Attacker Value
Unknown
CVE-2001-0248
Disclosure Date: June 18, 2001 (last updated February 22, 2025)
Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generate long strings.
0
Attacker Value
Unknown
CVE-2000-0844
Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0
Attacker Value
Unknown
CVE-2000-0799
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
inpview in InPerson in SGI IRIX 5.3 through IRIX 6.5.10 allows local users to gain privileges via a symlink attack on the .ilmpAAA temporary file.
0
Attacker Value
Unknown
CVE-2000-0733
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request.
0
Attacker Value
Unknown
CVE-2000-0207
Disclosure Date: March 01, 2000 (last updated February 22, 2025)
SGI InfoSearch CGI program infosrch.cgi allows remote attackers to execute commands via shell metacharacters.
0
Attacker Value
Unknown
CVE-2000-1220
Disclosure Date: January 08, 2000 (last updated February 22, 2025)
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to execute with arbitrary command line arguments, as demonstrated using the -C option to specify a configuration file.
0
Attacker Value
Unknown
CVE-2000-1221
Disclosure Date: January 08, 2000 (last updated February 22, 2025)
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostname of the local machine to the hostname of the print server as returned by gethostname, which allows remote attackers to bypass intended access controls by modifying the DNS for the attacking IP.
0
Attacker Value
Unknown
CVE-1999-0692
Disclosure Date: July 19, 1999 (last updated February 22, 2025)
The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain root privileges.
0