Vulnerabilities > SUN > Solaris > 2.6

DATE CVE VULNERABILITY TITLE RISK
1998-04-01 CVE-1999-0003 Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
network
low complexity
tritreal sgi hp ibm sun
critical
10.0
1998-03-11 CVE-1999-1118 Unspecified vulnerability in SUN Solaris 2.6
ndd in Solaris 2.6 allows local users to cause a denial of service by modifying certain TCP/IP parameters.
local
low complexity
sun
2.1
1998-03-01 CVE-1999-0502 A Unix account has a default, null, blank, or missing password.
network
low complexity
sun hp redhat
7.5
1998-02-01 CVE-1999-0296 Unspecified vulnerability in SUN Solaris and Sunos
Solaris volrmmount program allows attackers to read any file.
local
low complexity
sun
7.2
1998-01-25 CVE-1999-0125 Buffer overflow in SGI IRIX mailx program.
local
low complexity
sgi redhat sun
4.6
1998-01-05 CVE-1999-0513 ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
network
low complexity
sun digital ibm freebsd linux hp netbsd
5.0
1997-10-29 CVE-1999-0097 The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g.
network
low complexity
hp sun ibm
critical
10.0
1997-08-13 CVE-1999-0024 DNS cache poisoning via BIND, by predictable query IDs.
network
low complexity
isc sco sun nec ibm bsdi
5.0
1997-06-26 CVE-1999-1423 Unspecified vulnerability in SUN Solaris and Sunos
ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g.
local
low complexity
sun
2.1
1997-05-17 CVE-1999-1402 The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.
local
low complexity
freebsd sun
2.1