Vulnerabilities > SUN > Solaris > 7.0

DATE CVE VULNERABILITY TITLE RISK
2010-01-28 CVE-2003-1575 Permissions, Privileges, and Access Controls vulnerability in Symantec Vxfs 3.3.3/3.4/3.5
VERITAS File System (VxFS) 3.3.3, 3.4, and 3.5 before MP1 Rolling Patch 02 for Sun Solaris 2.5.1 through 9 does not properly implement inheritance of default ACLs in certain circumstances related to the characteristics of a directory inode, which allows local users to bypass intended file permissions by accessing a file on a VxFS filesystem.
local
low complexity
symantec sun CWE-264
4.6
2009-07-05 CVE-2009-2314 Race Condition vulnerability in SUN Lightweight Availability Collection Tool 3.0
Race condition in the Sun Lightweight Availability Collection Tool 3.0 on Solaris 7 through 10 allows local users to overwrite arbitrary files via unspecified vectors.
local
low complexity
sun CWE-362
2.1
2005-12-31 CVE-2005-4797 Unspecified vulnerability in SUN Solaris and Sunos
Directory traversal vulnerability in printd line printer daemon (lpd) in Solaris 7 through 10 allows remote attackers to delete arbitrary files via ".." sequences in an "Unlink data file" command.
network
low complexity
sun
5.0
2005-12-31 CVE-2005-4796 Local Arbitrary File Corruption vulnerability in Sun Solaris XView
Unspecified vulnerability in the XView library (libxview.so) in Solaris 2.5 to 10 allows local users to corrupt files via unknown vectors related to the handling of the clipboard selection while an XView application exits.
local
low complexity
sun
3.6
2005-06-16 CVE-2005-2032 Arbitrary Local File Overwrite vulnerability in Sun LPAdmin
Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files.
local
low complexity
sun
2.1
2005-05-16 CVE-2005-1591 Denial-Of-Service vulnerability in Solaris
Unknown vulnerability in NIS+ on Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (rpc.nisd disabled and NIS+ unavailable) via unknown vectors.
network
low complexity
sun
5.0
2005-05-11 CVE-2005-1518 Unspecified vulnerability in SUN Solaris and Sunos
Unknown vulnerability in Solaris 7 through 9, when using Federated Naming Services (FNS), autofs, and FNS X.500 configuration, allows local users to cause a denial of service (automountd crash) when "accessing" /xfn/_x500.
local
low complexity
sun
2.1
2005-05-02 CVE-2005-0816 Local Buffer Overflow vulnerability in Sun Solaris NewGRP
Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.
local
low complexity
sun
7.2
2005-03-05 CVE-2005-0109 Information Disclosure vulnerability in Multiple Vendor Hyper-Threading Technology
Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.
4.7
2004-12-31 CVE-2004-2686 Path Traversal vulnerability in SUN Solaris and Sunos
Directory traversal vulnerability in the vfs_getvfssw function in Solaris 2.6, 7, 8, and 9 allows local users to load arbitrary kernel modules via crafted (1) mount or (2) sysfs system calls.
local
low complexity
sun CWE-22
7.2