Vulnerabilities > SCO > Openserver > Medium

DATE CVE VULNERABILITY TITLE RISK
2001-12-31 CVE-2001-1508 Buffer Overflow vulnerability in SCO OpenServer lpstat
Buffer overflow in lpstat in SCO OpenServer 5.0 through 5.0.6a allows local users to execute arbitrary code as group bin via a long command line argument.
local
low complexity
sco
4.6
2001-11-30 CVE-2001-0896 Denial-Of-Service vulnerability in SCO Openserver 5.0.5
Inetd in OpenServer 5.0.5 allows remote attackers to cause a denial of service (crash) via a port scan, e.g.
network
low complexity
sco
5.0
2001-08-22 CVE-2001-0588 Local Security vulnerability in SCO Openserver 5.0.6
sendmail 8.9.3, as included with the MMDF 2.43.3b package in SCO OpenServer 5.0.6, can allow a local attacker to gain additional privileges via a buffer overflow in the first argument to the command.
local
low complexity
sco
4.6
2001-08-22 CVE-2001-0578 Local Security vulnerability in Openserver
Buffer overflow in lpforms in SCO OpenServer 5.0-5.0.6 can allow a local attacker to gain additional privileges via a long first argument to the lpforms command.
local
low complexity
sco
4.6
2001-08-22 CVE-2001-0576 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in SCO Openserver
lpusers as included with SCO OpenServer 5.0 through 5.0.6 allows a local attacker to gain additional privileges via a buffer overflow attack in the '-u' command line parameter.
local
low complexity
sco CWE-119
4.6
2001-08-22 CVE-2001-0575 Local Security vulnerability in SCO Openserver 5.0.6
Buffer overflow in lpshut in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a long first argument to lpshut.
local
low complexity
sco
4.6
2001-06-13 CVE-2001-1148 Local Security vulnerability in Openserver
Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local users to gain privileges via a long TERM environment variable to (1) atcronsh, (2) auditsh, (3) authsh, (4) backupsh, (5) lpsh, (6) sysadm.menu, or (7) termsh.
local
low complexity
sco
4.6
2001-03-12 CVE-2000-0307 Unspecified vulnerability in SCO Open Desktop, Openserver and Unixware
Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024.
network
low complexity
sco
5.0
1998-04-08 CVE-1999-0010 Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
network
low complexity
data-general isc ibm nec netbsd redhat sco sun
5.0
1997-08-13 CVE-1999-0024 DNS cache poisoning via BIND, by predictable query IDs.
network
low complexity
isc sco sun nec ibm bsdi
5.0