Vulnerabilities > SUN > Sunos > 4.0

DATE CVE VULNERABILITY TITLE RISK
1997-05-17 CVE-1999-1402 The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.
local
low complexity
freebsd sun
2.1
1997-03-01 CVE-1999-0165 NFS cache poisoning.
network
low complexity
sun bsdi linux
critical
10.0
1993-10-01 CVE-1999-1137 Unspecified vulnerability in SUN Solaris and Sunos
The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any local user to read from the device, which could be used by an attacker to monitor conversations happening near a machine that has a microphone.
local
low complexity
sun
2.1
1993-09-17 CVE-1999-1318 Unspecified vulnerability in SUN Sunos
/usr/5bin/su in SunOS 4.1.3 and earlier uses a search path that includes the current working directory (.), which allows local users to gain privileges via Trojan horse programs.
local
low complexity
sun
7.2
1992-05-27 CVE-1999-1142 Unspecified vulnerability in SUN Sunos
SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user.
local
low complexity
sun
7.2
1991-03-27 CVE-1999-1211 Local Security vulnerability in SunOS
Vulnerability in in.telnetd in SunOS 4.1.1 and earlier allows local users to gain root privileges.
local
low complexity
sun
7.2
1991-02-22 CVE-1999-1438 Unspecified vulnerability in SUN Sunos
Vulnerability in /bin/mail in SunOS 4.1.1 and earlier allows local users to gain root privileges via certain command line arguments.
local
low complexity
sun
7.2
1991-01-15 CVE-1999-1258 Unspecified vulnerability in SUN Sunos
rpc.pwdauthd in SunOS 4.1.1 and earlier does not properly prevent remote access to the daemon, which allows remote attackers to obtain sensitive system information.
network
low complexity
sun
5.0
1990-08-14 CVE-1999-0209 Unspecified vulnerability in SUN Sunos
The SunView (SunTools) selection_svc facility allows remote users to read files.
network
low complexity
sun
5.0
1990-01-29 CVE-1999-1506 Unspecified vulnerability in SUN Sunos
Vulnerability in SMI Sendmail 4.0 and earlier, on SunOS up to 4.0.3, allows remote attackers to access user bin.
network
low complexity
sun
7.5