Vulnerabilities > SCO > Openserver > 5.0.6

DATE CVE VULNERABILITY TITLE RISK
2006-01-04 CVE-2006-0072 Buffer Overflow vulnerability in SCO OpenServer Termsh
Buffer overflow in termsh on SCO OpenServer 5.0.7 allows remote attackers to execute arbitrary code via a long -o command line argument.
network
low complexity
sco
7.5
2005-05-02 CVE-2005-0993 Local Buffer Overflow vulnerability in SCO OpenServer NWPrint Command Line Argument
Buffer overflow in nwprint in SCO OpenServer 5.0.7 allows local users to execute arbitrary code via a long command line argument.
local
low complexity
sco
4.6
2005-04-07 CVE-2005-0351 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in SCO Openserver 5.0.6/5.0.7
Buffer overflow in (1) termsh, (2) atcronsh, and (3) auditsh in SCO OpenServer 5.0.6 and 5.0.7 might allow local users to execute arbitrary code via a long HOME environment variable.
local
low complexity
sco CWE-119
4.6
2005-02-07 CVE-2004-1131 Local Buffer Overflow vulnerability in SCO OpenServer Enable And Disable
Multiple buffer overflows in the enable command for SCO OpenServer 5.0.6 and 5.0.7 allow local users to execute arbitrary code via long command line arguments.
local
low complexity
sco
7.2
2005-01-26 CVE-2003-1021 Local Command Line Buffer Overflow vulnerability in SCO scosession
The scosession program in OpenServer 5.0.6 and 5.0.7 allows local users to gain privileges via crafted strings on the commandline.
local
low complexity
sco
7.2
2005-01-11 CVE-2004-1039 Denial of Service vulnerability in SCO UnixWare NFS Mountd
The NFS mountd service on SCO UnixWare 7.1.1, 7.1.3, 7.1.4, and 7.0.1, and possibly other versions, when run from inetd, allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests, which causes inetd to launch a separate process for each request.
network
low complexity
sco
5.0
2004-12-31 CVE-2004-0390 Unspecified vulnerability in SCO Openserver 5.0.5/5.0.6/5.0.7
SCO OpenServer 5.0.5 through 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote attackers to gain unauthorized access to an X session via other X login methods.
network
low complexity
sco
7.5
2004-12-23 CVE-2004-0512 Multiple vulnerability in SCO Multi-channel Memorandum Distribution Facility
Multiple unknown vulnerabilities in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to cause a denial of service by triggering a core dump.
local
low complexity
sco
2.1
2004-12-23 CVE-2004-0511 Multiple vulnerability in SCO Multi-channel Memorandum Distribution Facility
Multiple unknown vulnerabilities in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to cause a denial of service by triggering a null dereference.
local
low complexity
sco
2.1
2004-11-23 CVE-2004-0081 OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool. 5.0