Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
2003-04-02 CVE-2003-0092 Buffer Overflow vulnerability in SUN Solaris and Sunos
Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.
local
low complexity
sun
7.2
2003-04-02 CVE-2003-0091 Unspecified vulnerability in SUN Solaris and Sunos
Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local users to gain root privilege.
local
low complexity
sun
7.2
2003-04-02 CVE-2002-1525 Directory Traversal vulnerability in Sun ONE Starter Kit / ASTAware SearchDisc Search Engine
Directory traversal vulnerability in ASTAware SearchDisk engine for Sun ONE Starter Kit 2.0 allows remote attackers to read arbitrary files via a ..
network
low complexity
astaware sun
5.0
2003-03-28 CVE-2003-1074 Local Privilege Elevation vulnerability in SUN Solaris 9.0
Unknown vulnerability in newtask for Solaris 9 allows local users to gain root privileges.
local
low complexity
sun
7.2
2003-03-25 CVE-2003-0028 Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.
network
low complexity
gnu mit openafs sgi cray freebsd hp ibm openbsd sun
7.5
2003-03-18 CVE-2002-0387 Remote Buffer Overflow vulnerability in SUN ONE Application Server 6.0/6.5
Buffer overflow in gxnsapi6.dll NSAPI plugin of the Connector Module for Sun ONE Application Server before 6.5 allows remote attackers to execute arbitrary code via a long HTTP request URL.
network
low complexity
sun
7.5
2003-03-05 CVE-2003-1077 Denial Of Service vulnerability in SUN Solaris 9.0
Unknown vulnerability in UFS for Solaris 9 for SPARC, with logging enabled, allows local users to cause a denial of service (UFS file system hang).
local
low complexity
sun
2.1
2003-03-03 CVE-2003-0064 The dtterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g.
network
low complexity
sgi hp ibm sun
7.5
2003-02-28 CVE-2003-1078 Unspecified vulnerability in SUN Solaris and Sunos
The FTP client for Solaris 2.6, 7, and 8 with the debug (-d) flag enabled displays the user password on the screen during login.
network
low complexity
sun
7.5
2003-02-19 CVE-2003-0058 Denial of Service vulnerability in Kerberos Key Distribution Center
MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allows remote authenticated attackers to cause a denial of service (crash) on KDCs within the same realm via a certain protocol request that causes a null dereference.
network
low complexity
mit sun
5.0