Show filters
22 Total Results
Displaying 1-10 of 22
Sort by:
Attacker Value
Unknown
CVE-2000-0844
Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0
Attacker Value
Unknown
CVE-1999-1586
Disclosure Date: December 31, 1999 (last updated February 22, 2025)
loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584.
0
Attacker Value
Unknown
CVE-1999-1584
Disclosure Date: December 31, 1999 (last updated February 22, 2025)
Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environment variables, a different vulnerability than CVE-1999-1586.
0
Attacker Value
Unknown
CVE-1999-0687
Disclosure Date: September 13, 1999 (last updated February 22, 2025)
The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
0
Attacker Value
Unknown
CVE-1999-0691
Disclosure Date: September 13, 1999 (last updated February 22, 2025)
Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.
0
Attacker Value
Unknown
CVE-1999-1297
Disclosure Date: July 15, 1998 (last updated February 22, 2025)
cmdtool in OpenWindows 3.0 and XView 3.0 in SunOS 4.1.4 and earlier allows attackers with physical access to the system to display unechoed characters (such as those from password prompts) via the L2/AGAIN key.
0
Attacker Value
Unknown
CVE-1999-0009
Disclosure Date: April 08, 1998 (last updated February 22, 2025)
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
0
Attacker Value
Unknown
CVE-1999-0003
Disclosure Date: April 01, 1998 (last updated February 22, 2025)
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
0
Attacker Value
Unknown
CVE-1999-0097
Disclosure Date: October 29, 1997 (last updated February 22, 2025)
The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).
0
Attacker Value
Unknown
CVE-1999-0165
Disclosure Date: March 01, 1997 (last updated February 22, 2025)
NFS cache poisoning.
0