Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
2002-12-31 CVE-2002-2197 Denial Of Service vulnerability in Sun Solaris /dev/poll Null Pointer Dereference
Unknown vulnerability in Sun Solaris 8.0 allows local users to cause a denial of service (kernel panic) via a program that uses /dev/poll, triggering a NULL pointer dereference.
local
low complexity
sun
7.2
2002-12-31 CVE-2002-2089 Buffer Overflow vulnerability in SUN Solaris 9.0
Buffer overflow in rcp in Solaris 9.0 allows local users to execute arbitrary code via a long command line argument.
local
low complexity
sun
4.6
2002-12-31 CVE-2002-2072 Unspecified vulnerability in SUN JRE 1.2.2/1.3.1
java.security.AccessController in Sun Java Virtual Machine (JVM) in JRE 1.2.2 and 1.3.1 allows remote attackers to cause a denial of service (JVM crash) via a Java program that calls the doPrivileged method with a null argument.
network
low complexity
sun
5.0
2002-12-31 CVE-2002-2036 Unspecified vulnerability in SUN RAY Server Software 1.3
Sun Ray Server Software (SRSS) 1.3, when Non-Smartcard Mobility (NSCM) is enabled, allows remote attackers to login as another user by running dtlogin from a system that supports the XDMCP client.
network
low complexity
sun
7.5
2002-12-31 CVE-2002-2005 Unspecified vulnerability in SUN Java web Start 1.0/1.0.1/1.0.101
Unknown vulnerability in Java web start 1.0.1_01, 1.0.1, 1.0 and 1.0.1.01 (HP-UX 11.x only) allows attackers to gain access to restricted resources via unknown attack vectors.
network
low complexity
sun
7.5
2002-12-31 CVE-2002-1980 Local Buffer Overflow vulnerability in Sun Solaris Volume Manager
Buffer overflow in Volume Manager daemon (vold) of Sun Solaris 2.5.1 through 8 allows local users to execute arbitrary code via unknown attack vectors.
local
low complexity
sun
7.2
2002-12-31 CVE-2002-1871 Unspecified vulnerability in SUN Solaris and Sunos
pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges.
local
low complexity
sun
7.2
2002-12-31 CVE-2002-1763 Authentication Bypass vulnerability in SUN Sunos 5.8
The dtscreen Sun Solaris 8 CDE screensaver crashes when the "Shift" and "Return" keys are pressed repeatedly and quickly, which allows local users to access the current session.
local
low complexity
sun
4.6
2002-12-27 CVE-2002-1584 Privilege Escalation vulnerability in Sun Solaris RPC AUTH_DES
Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and possibly other platforms, allows remote attackers to gain privileges.
network
low complexity
sgi sun
critical
10.0
2002-12-23 CVE-2002-1361 Unspecified vulnerability in SUN Cobalt RAQ 4
overflow.cgi CGI script in Sun Cobalt RaQ 4 with the SHP (Security Hardening Patch) installed allows remote attackers to execute arbitrary code via a POST request with shell metacharacters in the email parameter.
network
low complexity
sun
critical
10.0