Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
1997-11-26 CVE-1999-0210 Unspecified vulnerability in SUN Solaris and Sunos
Automount daemon automountd allows local or remote users to gain privileges via shell metacharacters.
network
low complexity
sun
critical
10.0
1997-11-10 CVE-1999-1428 Unspecified vulnerability in SUN Solstice Adminsuite 2.1/2.2
Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Database Manager, which is running with setgid bin privileges.
local
high complexity
sun
6.2
1997-11-10 CVE-1999-1427 Unspecified vulnerability in SUN Solstice Adminsuite 2.1/2.2
Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges.
local
high complexity
sun
6.2
1997-11-10 CVE-1999-1426 Unspecified vulnerability in SUN Solstice Adminsuite 2.1/2.2
Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files.
local
high complexity
sun
6.2
1997-11-10 CVE-1999-1425 Unspecified vulnerability in SUN Solstice Adminsuite 2.1/2.2
Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.
local
high complexity
sun
6.2
1997-11-10 CVE-1999-1424 Unspecified vulnerability in SUN Solstice Adminsuite 2.1/2.2
Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries.
local
high complexity
sun
6.2
1997-10-29 CVE-1999-0097 The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g.
network
low complexity
hp sun ibm
critical
10.0
1997-10-01 CVE-1999-0300 Unspecified vulnerability in SUN Solaris and Sunos
nis_cachemgr for Solaris NIS+ allows attackers to add malicious NIS+ servers.
network
low complexity
sun
7.5
1997-10-01 CVE-1999-0295 Unspecified vulnerability in SUN Solaris and Sunos
Solaris sysdef command allows local users to read kernel memory, potentially leading to root privileges.
local
low complexity
sun
7.2
1997-10-01 CVE-1999-0185 Unspecified vulnerability in SUN Solaris and Sunos
In SunOS or Solaris, a remote user could connect from an FTP server's data port to an rlogin server on a host that trusts the FTP server, allowing remote command execution.
network
low complexity
sun
7.5