Vulnerabilities > SGI > Critical

DATE CVE VULNERABILITY TITLE RISK
2003-10-06 CVE-2003-0694 The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.
network
low complexity
sendmail sgi apple compaq freebsd gentoo hp ibm netbsd sun turbolinux
critical
10.0
2003-08-27 CVE-2003-0575 Privilege Escalation vulnerability in SGI IRIX NSD AUTH_UNIX GID List
Heap-based buffer overflow in the name services daemon (nsd) in SGI IRIX 6.5.x through 6.5.21f, and possibly earlier versions, allows attackers to gain root privileges via the AUTH_UNIX gid list.
network
low complexity
sgi
critical
10.0
2003-08-07 CVE-2003-0473 Unspecified vulnerability in SGI Irix 6.5.19
Unknown vulnerability in the IPv6 capability in IRIX 6.5.19 causes snoop to process packets as the root user, with unknown implications.
network
low complexity
sgi
critical
10.0
2003-05-12 CVE-2003-0174 Origin Validation Error vulnerability in SGI Irix
The LDAP name service (nsd) in IRIX 6.5.19 and earlier does not properly verify if the USERPASSWORD attribute has been provided by an LDAP server, which could allow attackers to log in without a password.
network
low complexity
sgi CWE-346
critical
9.8
2002-12-27 CVE-2002-1584 Privilege Escalation vulnerability in Sun Solaris RPC AUTH_DES
Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and possibly other platforms, allows remote attackers to gain privileges.
network
low complexity
sgi sun
critical
10.0
2002-12-11 CVE-2002-1318 Buffer Overrun vulnerability in Samba Server Encrypted Password
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the overflow during decryption in which a DOS codepage string is converted to a little-endian UCS2 unicode string.
network
low complexity
samba sgi hp
critical
10.0
2002-07-03 CVE-2002-0359 Authentication vulnerability in SGI IRIX rpc.xfsmd Weak
xfsmd for IRIX 6.5 through 6.5.16 uses weak authentication, which allows remote attackers to call dangerous RPC functions, including those that can mount or unmount xfs file systems, to gain root privileges.
network
low complexity
sgi
critical
10.0
2001-12-12 CVE-2001-0797 Buffer Overflow vulnerability in Multiple Vendor System V Derived 'login'
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin.
network
low complexity
sgi hp ibm sco sun
critical
10.0
2001-12-06 CVE-2001-0800 Remote Command Execution vulnerability in IRIX 'lpsched'
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
network
low complexity
sgi
critical
10.0
2001-12-06 CVE-2001-0799 Remote Security vulnerability in IRIX
Buffer overflows in lpsched in IRIX 6.5.13f and earlier allow remote attackers to execute arbitrary commands via a long argument.
network
low complexity
sgi
critical
10.0