Vulnerabilities > SUN > Sunos > 5.8

DATE CVE VULNERABILITY TITLE RISK
2004-08-06 CVE-2004-0654 Denial Of Service vulnerability in Sun Solaris Basic Security Module Auditing
Unknown vulnerability in the Basic Security Module (BSM), when configured to audit either the Administrative (ad) or the System-Wide Administration (as) audit class in Solaris 7, 8, and 9, allows local users to cause a denial of service (kernel panic).
local
low complexity
sun
2.1
2004-05-14 CVE-2004-1354 Path Traversal vulnerability in SUN Solaris and Sunos
The Solaris Management Console (SMC) in Sun Solaris 8 and 9 generates different 404 error messages when a file does not exist versus when a file exists but is otherwise inaccessible, which could allow remote attackers to obtain sensitive information in conjunction with a directory traversal (..) attack.
network
low complexity
sun CWE-22
5.0
2004-04-23 CVE-2004-1356 Local Denial Of Service vulnerability in Sun Solaris SendFileV
Unknown vulnerability in the sendfilev function in Sun Solaris 8 and 9 allows local users to cause a denial of service (system panic) via unknown vectors.
local
low complexity
sun
2.1
2004-03-04 CVE-2004-1359 Local UUCP Buffer Overrun vulnerability in Sun Solaris
Multiple buffer overflows in uucp for Sun Solaris 2.6, 7, 8, and 9 allow local users to execute arbitrary code as the uucp user.
local
low complexity
sun
4.6
2004-02-27 CVE-2004-1360 File Overwrite vulnerability in Sun Solaris conv_fix
Unknown vulnerability in conv_fix in Sun Solaris 7 through 9, when invoked by conv_lpd, allows local users to overwrite arbitrary files.
local
low complexity
sun
2.1
2004-02-03 CVE-2004-1082 mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials.
network
low complexity
apache apple avaya hp ibm openbsd sco sun
7.5
2004-01-20 CVE-2003-1024 Privilege Escalation vulnerability in SUN Sunos 5.8
Unknown vulnerability in the ls-F builtin function in tcsh on Solaris 8 allows local users to create or delete files as other users, and gain privileges.
local
low complexity
sun
7.2
2004-01-05 CVE-2003-0999 Local Security vulnerability in Solaris
Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or read or write arbitrary files.
local
low complexity
sun
7.2
2003-12-31 CVE-2003-1563 Denial Of Service vulnerability in Sun Cluster TCP Port Conflict
Sun Cluster 2.2 through 3.2 for Oracle Parallel Server / Real Application Clusters (OPS/RAC) allows local users to cause a denial of service (cluster node panic or abort) by launching a daemon listening on a TCP port that would otherwise be used by the Distributed Lock Manager (DLM), possibly involving this daemon responding in a manner that spoofs a cluster reconfiguration.
local
high complexity
sun
4.0
2003-12-31 CVE-2003-1437 Unspecified vulnerability in BEA Weblogic Server 7.0/7.0.0.1
BEA WebLogic Express and WebLogic Server 7.0 and 7.0.0.1, stores passwords in plaintext when a keystore is used to store a private key or trust certificate authorities, which allows local users to gain access.
local
low complexity
hp ibm microsoft redhat sun bea
2.1