Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1996-12-03 CVE-1999-0129 Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
local
low complexity
eric-allman sco sun hp ibm bsdi freebsd
4.6
1996-12-03 CVE-1999-0044 Unspecified vulnerability in SGI Irix
fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
local
low complexity
sgi
7.2
1996-12-01 CVE-1999-0050 Unspecified vulnerability in HP Hp-Ux
Buffer overflow in HP-UX newgrp program.
local
low complexity
hp
7.2
1996-11-26 CVE-1999-1240 Unspecified vulnerability in Gracenote Cddbd
Buffer overflow in cddbd CD database server allows remote attackers to execute arbitrary commands via a long log message.
network
low complexity
gracenote
7.5
1996-11-22 CVE-1999-1099 Unspecified vulnerability in KTH Kerberos 4
Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error string that inadvertently includes the realm name and the last user.
network
low complexity
kth
5.0
1996-11-17 CVE-1999-1221 Unspecified vulnerability in Digital Unix 3
dxchpwd in Digital Unix (OSF/1) 3.x allows local users to modify arbitrary files via a symlink attack on the dxchpwd.log file.
local
low complexity
digital
2.1
1996-11-16 CVE-1999-0130 Local users can start Sendmail in daemon mode and gain root privileges.
local
low complexity
caldera eric-allman bsdi freebsd hp ibm redhat
7.2
1996-11-01 CVE-1999-0336 Unspecified vulnerability in HP Hp-Ux 10
Buffer overflow in mstm in HP-UX allows local users to gain root access.
local
low complexity
hp
7.2
1996-11-01 CVE-1999-0311 Unspecified vulnerability in HP Hp-Ux 10
fpkg2swpk in HP-UX allows local users to gain root access.
local
low complexity
hp
7.2
1996-10-30 CVE-1999-1384 Unspecified vulnerability in SGI Irix
Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the RemoveSystemTour program.
local
low complexity
sgi
7.2