Vulnerabilities > SCO > High

DATE CVE VULNERABILITY TITLE RISK
1999-11-01 CVE-1999-0830 Unspecified vulnerability in SCO Unixware 7.0
Buffer overflow in SCO UnixWare Xsco command via a long argument.
local
low complexity
sco
7.2
1999-10-04 CVE-1999-0942 Unspecified vulnerability in SCO Unixware 7.1
UnixWare dos7utils allows a local user to gain root privileges by using the STATICMERGE environmental variable to find a script which it executes.
local
low complexity
sco
7.2
1999-09-09 CVE-1999-0697 Unspecified vulnerability in SCO Openserver 5.0.4/5.0.5
SCO Doctor allows local users to gain root privileges through a Tools option.
local
low complexity
sco
7.2
1999-03-07 CVE-1999-0411 Unspecified vulnerability in SCO Openserver 3.0/5
Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs, are vulnerable to a symlink attack, allowing a local user to gain root access.
local
low complexity
sco
7.2
1999-03-01 CVE-1999-0476 Unspecified vulnerability in SCO Openserver
A weak encryption algorithm is used for passwords in SCO TermVision, allowing them to be easily decrypted by a local user.
local
low complexity
sco
7.2
1999-01-27 CVE-1999-1450 Unspecified vulnerability in SCO Openserver and Unixware
Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1 and earlier, allows remote attackers to gain privileges.
network
low complexity
sco
7.5
1998-10-06 CVE-1999-1185 Unspecified vulnerability in SCO products
Buffer overflow in SCO mscreen allows local users to gain root privileges via a long terminal entry (TERM) in the .mscreenrc file.
local
low complexity
sco
7.2
1998-08-27 CVE-1999-1041 Unspecified vulnerability in SCO Openserver and Unix
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a long TERM environmental variable and (2) a long entry in the .mscreenrc file.
local
low complexity
sco
7.2
1997-12-10 CVE-1999-0017 FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. 7.5
1997-11-20 CVE-1999-1209 Unspecified vulnerability in SCO Open Desktop and Openserver
Vulnerability in scoterm in SCO OpenServer 5.0 and SCO Open Desktop/Open Server 3.0 allows local users to gain root privileges.
local
low complexity
sco
7.2