Sun
sun
1,603 CVEs • 200 products
Products (200)
Click to collapseToggle
Products (200)
Click to collapse
CVEs (1,603)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files. |
Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd. |
Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries. |
The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character). |
nis_cachemgr for Solaris NIS+ allows attackers to add malicious NIS+ servers. |
Solaris sysdef command allows local users to read kernel memory, potentially leading to root privileges. |
In SunOS or Solaris, a remote user could connect from an FTP server's data port to an rlogin server on a host that trusts the FTP server, allowing remote command execution. |
5Digital LinuxNetbsd+2 more5Linux Kernel NetbsdOpenbsd+2 moreApr 16, 2026 Aug 24, 1997 N/A· v4 N/A· v3 5.0 MEDIUM· v2 rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of a file on the server by attempting to mount that file, which generates different error messages dep...Show more |
6Bsdi IbmIsc+3 more12Aix Asl Ux 4800Bind+9 moreApr 16, 2026 Aug 13, 1997 N/A· v4 N/A· v3 5.0 MEDIUM· v2 DNS cache poisoning via BIND, by predictable query IDs. |
Buffer overflow in SunOS/Solaris ps command. |
Buffer overflow in nss_nisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gain root privileges. |
NFS allows attackers to read and write any file on the system by specifying a false UID. |
ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g. via ping -i. |
Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument. |
5Ibm NcrSco+2 more7Aix IrixMp Ras+4 moreApr 16, 2026 Jun 12, 1997 N/A· v4 N/A· v3 7.2 HIGH· v2 Command execution in Sun systems via buffer overflow in the at program. |
Solaris rpcbind listens on a high numbered UDP port, which may not be filtered since the standard port number is 111. |
SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device. |
Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument. |
The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or c...Show more |
Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4 and 2.3 allows local users to gain root privileges via programs that use these modules such as pass...Show more |