Vulnerabilities > IBM

DATE CVE VULNERABILITY TITLE RISK
1998-03-18 CVE-1999-1075 Unspecified vulnerability in IBM AIX 4.1.5
inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.
network
low complexity
ibm
5.0
1998-02-25 CVE-1999-1486 Unspecified vulnerability in IBM AIX
sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to overwrite arbitrary files via a symlink attack.
local
high complexity
ibm
1.2
1998-02-01 CVE-1999-0087 Unspecified vulnerability in IBM AIX 4.1/4.2/4.3
Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.
network
low complexity
ibm
5.0
1998-01-21 CVE-1999-1487 Unspecified vulnerability in IBM AIX
Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.
local
low complexity
ibm
7.2
1998-01-21 CVE-1999-0014 Unauthorized privileged access or denial of service via dtappgather program in CDE.
local
low complexity
cde hp ibm
7.2
1998-01-08 CVE-1999-0086 Unspecified vulnerability in IBM AIX
AIX routed allows remote users to modify sensitive files.
network
low complexity
ibm
5.0
1998-01-05 CVE-1999-0513 ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
network
low complexity
sun digital ibm freebsd linux hp netbsd
5.0
1998-01-01 CVE-1999-0284 Classic Buffer Overflow vulnerability in multiple products
Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.
network
low complexity
ibm microsoft CWE-120
7.5
1997-12-10 CVE-1999-0017 FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. 7.5
1997-12-05 CVE-1999-0018 Buffer overflow in statd allows root privileges.
network
low complexity
sgi ibm sun
critical
10.0