Vulnerabilities > SCO > Unixware > Medium

DATE CVE VULNERABILITY TITLE RISK
2002-12-11 CVE-2002-1323 Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between successive calls.
local
low complexity
safe-pm sun sgi redhat sco
4.6
2001-12-31 CVE-2001-1579 Denial-Of-Service vulnerability in SCO Open Unix and Unixware
The timed program (in.timed) in UnixWare 7 and OpenUnix 8.0.0 does not properly terminate certain strings with a null, which allows remote attackers to cause a denial of service.
network
low complexity
sco
5.0
2001-03-12 CVE-2000-0351 Unspecified vulnerability in SCO Unixware
Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages.
local
low complexity
sco
4.6
2001-03-12 CVE-2000-0349 Unspecified vulnerability in SCO Unixware
Vulnerability in the passthru driver in SCO UnixWare 7.1.0 allows an attacker to cause a denial of service.
network
low complexity
sco
5.0
2001-03-12 CVE-2000-0307 Unspecified vulnerability in SCO Open Desktop, Openserver and Unixware
Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024.
network
low complexity
sco
5.0
2000-11-14 CVE-2000-0842 Unspecified vulnerability in SCO Unixware 7.0
The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a ..
network
low complexity
sco
5.0
2000-03-10 CVE-2000-0173 Unspecified vulnerability in SCO Unixware 7.1/7.1.1
Vulnerability in the EELS system in SCO UnixWare 7.1.x allows remote attackers to cause a denial of service.
network
low complexity
sco
5.0
1999-12-27 CVE-2000-0029 Unspecified vulnerability in SCO Unixware 7.1
UnixWare pis and mkpis commands allow local users to gain privileges via a symlink attack.
local
low complexity
sco
4.6
1998-04-08 CVE-1999-0010 Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
network
low complexity
data-general isc ibm nec netbsd redhat sco sun
5.0
1997-12-16 CVE-1999-0004 MIME buffer overflow in email clients, e.g.
network
low complexity
hp university-of-washington sco
5.0