Vulnerabilities > QNX > RTP

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-1391 Local Command Execution vulnerability in QNX Rtos and RTP
Untrusted execution path vulnerability in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allows local users to execute arbitrary programs by modifying the PATH environment variable to point to a malicious mount program.
local
low complexity
qnx
4.6
2004-12-31 CVE-2004-1390 Local Buffer Overrun vulnerability in QNX Rtos and RTP
Multiple buffer overflows in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allow remote attackers to execute arbitrary code via a long argument to the (1) -F, (2) name, (3) en, (4) upscript, (5) downscript, (6) retries, (7) timeout, (8) scriptdetach, (9) noscript, (10) nodetach, (11) remote_mac, or (12) local_mac flags.
network
low complexity
qnx
critical
10.0
2004-08-26 CVE-2004-1681 Utility Server Flag Buffer Overflow vulnerability in QNX Photon Microgui and RTP
Multiple buffer overflows in (1) phrelay-cfg, (2) phlocale, (3) pkg-installer, or (4) input-cfg in QNX Photon microGUI for QNX RTP 6.1 allow local users to gain privileges via a long -s (server) command line parameter.
local
low complexity
qnx
7.2
2004-08-15 CVE-2004-1682 Remote Security vulnerability in QNX RTP 6.1
Format string vulnerability in QNX 6.1 FTP client allows remote authenticated users to gain group bin privileges via format string specifiers in the QUOTE command.
network
low complexity
qnx
critical
10.0
2001-05-03 CVE-2001-0325 Buffer Overflow vulnerability in QNX RTP 5.60
Buffer overflow in QNX RTP 5.60 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large number of arguments to the stat command.
network
low complexity
qnx
7.5