Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
2009-01-27 CVE-2009-0277 Local Denial of Service vulnerability in SUN Opensolaris Snv100/Snv101/Snv102
Unspecified vulnerability in the kernel in OpenSolaris snv_100 through snv_102 on the Sun UltraSPARC T2 and T2+ sun4v platforms allows local users to cause a denial of service (panic) via unknown vectors.
network
low complexity
sun
7.8
2009-01-26 CVE-2009-0268 Race Condition vulnerability in SUN Opensolaris and Solaris
Race condition in the pseudo-terminal (aka pty) driver module in Sun Solaris 8 through 10, and OpenSolaris before snv_103, allows local users to cause a denial of service (panic) via unspecified vectors related to lack of "properly sequenced code" in ptc and ptsl.
local
low complexity
sun CWE-362
4.9
2009-01-26 CVE-2009-0267 Improper Input Validation vulnerability in SUN Opensolaris and Solaris
libike in Sun Solaris 9 and 10, and OpenSolaris before snv_100, does not properly check packets, which allows remote attackers to cause a denial of service (in.iked daemon crash) via an unspecified IKE packet, a different vulnerability than CVE-2007-2989.
network
low complexity
sun CWE-20
5.0
2009-01-16 CVE-2009-0171 Permissions, Privileges, and Access Controls vulnerability in SUN Sparc Enterprise Server M4000/M5000
The Sun SPARC Enterprise M4000 and M5000 Server, within a certain range of serial numbers, allows remote attackers to use the manufacturing root password, perform a root login to the eXtended System Control Facility Unit (aka XSCFU or Service Processor), and have unspecified other impact.
network
low complexity
sun CWE-264
critical
10.0
2009-01-16 CVE-2009-0170 Permissions, Privileges, and Access Controls vulnerability in SUN Java System Access Manager 6.3/7.02005Q4/7.1
Sun Java System Access Manager 6.3 2005Q1, 7 2005Q4, and 7.1 allows remote authenticated users with console privileges to discover passwords, and obtain unspecified other "access to resources," by visiting the Configuration Items component in the console.
network
sun CWE-264
6.0
2009-01-16 CVE-2009-0169 Permissions, Privileges, and Access Controls vulnerability in SUN Java System Access Manager 7.1
Sun Java System Access Manager 7.1 allows remote authenticated sub-realm administrators to gain privileges, as demonstrated by creating the amadmin account in the sub-realm, and then logging in as amadmin in the root realm.
network
low complexity
sun CWE-264
critical
9.0
2009-01-16 CVE-2009-0168 Denial-Of-Service vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in ppdmgr in Sun Solaris 10 and OpenSolaris snv_61 through snv_106 allows local users to cause a denial of service via unspecified vectors, related to a failure to "include all cache files," and improper handling of temporary files.
local
low complexity
sun
4.9
2009-01-16 CVE-2009-0167 Local Denial Of Service vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in lpadmin in Sun Solaris 10 and OpenSolaris snv_61 through snv_106 allows local users to cause a denial of service via unspecified vectors, related to enumeration of "wrong printers," aka a "Temporary file vulnerability."
local
sun
4.7
2009-01-16 CVE-2008-5910 Unspecified vulnerability in SUN Opensolaris
Unspecified vulnerability in txzonemgr in Sun OpenSolaris has unknown impact and local attack vectors, related to a "Temporary file vulnerability," aka Bug ID 6653462.
local
low complexity
sun
7.2
2009-01-16 CVE-2008-5909 Unspecified vulnerability in SUN Opensolaris
Unspecified vulnerability in conv_lpd in Sun OpenSolaris has unknown impact and local attack vectors, related to improper handling of temporary files, aka Bug ID 6655641.
local
low complexity
sun
7.2