Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
2003-02-18 CVE-2003-1079 Denial of Service vulnerability in Sun Solaris UDP RPC Packet
Unknown vulnerability in UDP RPC for Solaris 2.5.1 through 9 for SPARC, and 2.5.1 through 8 for x86, allows remote attackers to cause a denial of service (memory consumption) via certain arguments in RPC calls that cause large amounts of memory to be allocated.
network
low complexity
sun
5.0
2003-02-11 CVE-2003-1080 Local Race Condition vulnerability in Sun Microsystems Solaris Mail Reading
Unknown vulnerability in mail for Solaris 2.6 through 9 allows local users to read the email of other users.
local
high complexity
sun
1.2
2003-02-07 CVE-2003-0027 Unspecified vulnerability in SUN Solaris and Sunos
Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.
network
low complexity
sun
5.0
2003-01-27 CVE-2003-1075 Remote Denial of Service vulnerability in Solaris in.ftpd
Unknown vulnerability in the FTP server (in.ftpd) for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (temporary FTP server hang), which affects other active mode FTP clients.
network
low complexity
sun
5.0
2003-01-03 CVE-2003-1071 Unspecified vulnerability in SUN Solaris and Sunos
rpc.walld (wall daemon) for Solaris 2.6 through 9 allows local users to send messages to logged on users that appear to come from arbitrary user IDs by closing stderr before executing wall, then supplying a spoofed from header.
local
low complexity
sun
2.1
2002-12-31 CVE-2002-2425 Permissions, Privileges, and Access Controls vulnerability in SUN Solaris Answerbook2
Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError and (2) AdminAddadmin via a direct request.
network
low complexity
sun CWE-264
critical
10.0
2002-12-31 CVE-2002-2374 Race Condition vulnerability in SUN Patchpro 2.0
Unspecified vulnerability in pprosetup in Sun PatchPro 2.0 has unknown impact and attack vectors related to "unsafe use of temporary files."
network
low complexity
sun CWE-362
critical
10.0
2002-12-31 CVE-2002-2327 Permissions, Privileges, and Access Controls vulnerability in SUN Sunos 5.8
Unspecified vulnerability in the environmental monitoring subsystem in Solaris 8 running on Sun Fire 280R, V480 and V880 allows local users to cause a denial of service by setting volatile properties.
local
low complexity
sun CWE-264
4.9
2002-12-31 CVE-2002-2323 Improper Preservation of Permissions vulnerability in SUN Solaris PC Netlink 1.0/1.1/1.2
Sun PC NetLink 1.0 through 1.2 does not properly set the access control list (ACL) for files and directories that use symbolic links and have been restored from backup, which could allow local or remote attackers to bypass intended access restrictions.
network
low complexity
sun CWE-281
7.5
2002-12-31 CVE-2002-2203 Unspecified vulnerability in SUN Solaris and Sunos
Unknown vulnerability in the System Serial Console terminal in Solaris 2.5.1, 2.6, and 7 allows local users to monitor keystrokes and possibly steal sensitive information.
local
low complexity
sun
4.9