VendorsIBMaix4.2
Vulnerabilities

IBM AIX 4.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

54CVEs
CVE-1999-0628
The rwho/rwhod service is running, which exposes machine status and user information.
Published 1999-09-29 · Modified
5.0EPSS 0.015
CVE-1999-0111
RIP v1 is susceptible to spoofing.
Published 1999-09-29 · Modified
5.0EPSS 0.014
CVE-1999-0087
Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.
Published 1999-09-29 · Modified
5.0EPSS 0.014
CVE-1999-0345
Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.
Published 2000-02-04 · Modified
5.0EPSS 0.013
CVE-2000-0441
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
Published 2000-07-12 · Modified
5.0EPSS 0.009
CVE-2000-1119
Buffer overflow in setsenv command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands via a long "x=" argument.
Published 2001-05-07 · Modified
4.61 PoCEPSS 0.010
CVE-1999-0129
Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
Published 1999-09-29 · Modified
4.6EPSS 0.006
CVE-1999-0094
AIX piodmgrsu command allows local users to gain additional group privileges.
Published 1999-09-29 · Modified
4.6EPSS 0.004
CVE-1999-1079
Vulnerability in ptrace in AIX 4.3 allows local users to gain privileges by attaching to a setgid program.
Published 2001-09-12 · Modified
4.6EPSS 0.003
CVE-1999-1117
lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line parameter.
Published 2002-03-09 · Modified
2.11 PoCEPSS 0.007
CVE-2000-0873
netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics and possibly hide evidence of unusual network activities.
Published 2001-01-22 · Modified
2.11 PoCEPSS 0.006
CVE-1999-0694
Denial of service in AIX ptrace system call allows local users to crash the system.
Published 2000-01-18 · Modified
2.1EPSS 0.003
CVE-1999-0078
pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call.
Published 2000-02-04 · Modified
1.9EPSS 0.009
CVE-1999-1486
sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to overwrite arbitrary files via a symlink attack.
Published 2004-09-01 · Modified
1.2EPSS 0.003
← Prev2 / 2