VendorsScounixwareall versions
Vulnerabilities

Sco Unixware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

66CVEs
CVE-1999-0368
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.398
CVE-1999-0009
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.290
CVE-1999-0011
Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
Published 1999-09-29 · Modified
10.0EPSS 0.055
CVE-2000-0026
Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string.
Published 2000-03-22 · Modified
10.01 PoCEPSS 0.046
CVE-1999-0836
UnixWare uidadmin allows local users to modify arbitrary files via a symlink attack.
Published 2000-06-02 · Modified
10.01 PoCEPSS 0.031
CVE-2000-0308
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.
Published 2001-05-07 · Modified
10.0EPSS 0.022
CVE-1999-0798
Buffer overflow in bootpd on OpenBSD, FreeBSD, and Linux systems via a malformed header type.
Published 2000-02-04 · Modified
10.0EPSS 0.016
CVE-2000-0348
A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain root privileges.
Published 2001-05-07 · Modified
10.0EPSS 0.015
CVE-1999-0835
Denial of service in BIND named via malformed SIG records.
Published 2000-01-04 · Modified
10.0EPSS 0.015
CVE-2000-0003
Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.
Published 2000-03-22 · Modified
10.0EPSS 0.014
CVE-2009-1552
Unspecified vulnerability in the IGMP driver in SCO Unixware Release 7.1.4 Maintenance Pack 4 allows attackers to cause a denial of service (system panic) via unspecified vectors.
Published 2009-05-06 · Modified
7.8EPSS 0.014
CVE-2000-1014
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.
Published 2001-01-22 · Modified
7.51 PoCEPSS 0.115
CVE-2004-1307
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
Published 2005-05-04 · Modified
7.5EPSS 0.063
CVE-2002-1998
Buffer overflow in rpc.cmsd in SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows remote attackers to execute arbitrary commands via a long parameter to rtable_create (procedure 21).
Published 2005-07-14 · Modified
7.5EPSS 0.025
CVE-1999-0017
FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
Published 1999-09-29 · Modified
7.5EPSS 0.020
CVE-1999-1450
Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1 and earlier, allows remote attackers to gain privileges.
Published 2001-09-12 · Modified
7.5EPSS 0.016
CVE-2003-0834
Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3) LOGNAME.
Published 2003-11-06 · Modified
7.22 PoCEPSS 0.014
CVE-1999-0830
Buffer overflow in SCO UnixWare Xsco command via a long argument.
Published 2000-02-04 · Modified
7.21 PoCEPSS 0.011
CVE-1999-0693
Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges.
Published 2000-01-04 · Modified
7.21 PoCEPSS 0.010
CVE-2000-0130
Buffer overflow in SCO scohelp program allows remote attackers to execute commands.
Published 2000-10-13 · Modified
7.2EPSS 0.010
CVE-2008-6558
Untrusted search path vulnerability in (1) hvdisp and (2) rcvm in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges by modifying the RELIANT_PATH environment variable to point to a malicious bin/hvenv program.
Published 2009-03-30 · Modified
7.21 PoCEPSS 0.009
CVE-2005-2934
Unspecified vulnerability in ptrace in SCO UnixWare 7.1.3 and 7.1.4 allows local users to gain privileges via unspecified vectors.
Published 2006-02-24 · Modified
7.21 PoCEPSS 0.008
CVE-2008-6559
Merge mcd in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges via a crafted -d argument that contains .. (dot dot) sequences that point to a directory containing a file whose name includes shell metacharacters.
Published 2009-03-30 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0988
UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack.
Published 2000-02-04 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0845
Buffer overflow in SCO su program allows local users to gain root access via a long username.
Published 2000-02-04 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0866
Buffer overflow in UnixWare xauto program allows local users to gain root privilege.
Published 2000-06-02 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0023
Local user gains root privileges via buffer overflow in rdist, via lookup() function.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0864
UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file.
Published 2000-06-02 · Modified
7.21 PoCEPSS 0.007
CVE-1999-0979
The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed.
Published 2000-01-04 · Modified
7.21 PoCEPSS 0.007
CVE-1999-0033
Command execution in Sun systems via buffer overflow in the at program.
Published 2000-02-04 · Modified
7.2EPSS 0.006
CVE-2005-2927
Stack-based buffer overflow in ppp in SCO Unixware 7.1.3 and 7.1.4, and possibly earlier versions, allows local users to execute arbitrary code via a long argument to the (1) prompt or (2) defprompt command.
Published 2005-10-25 · Modified
7.2EPSS 0.005
CVE-1999-0942
UnixWare dos7utils allows a local user to gain root privileges by using the STATICMERGE environmental variable to find a script which it executes.
Published 2000-10-13 · Modified
7.2EPSS 0.004
CVE-1999-1252
Vulnerability in a certain system call in SCO UnixWare 2.0.x and 2.1.0 allows local users to access arbitrary files and gain root privileges.
Published 2001-09-12 · Modified
7.2EPSS 0.004
CVE-2000-0099
Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument.
Published 2000-04-18 · Modified
7.2EPSS 0.004
CVE-2000-0215
Vulnerability in SCO cu program in UnixWare 7.x allows local users to gain privileges.
Published 2000-04-10 · Modified
7.2EPSS 0.003
CVE-2008-0310
Directory traversal vulnerability in pkgadd in SCO UnixWare 7.1.4 before p534589 allows local users to create or append to arbitrary files via ".." sequences in an unspecified environment variable, probably PKGINST.
Published 2008-04-07 · Modified
6.91 PoCEPSS 0.010
CVE-2005-0109
Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.
Published 2005-03-08 · Modified
5.6EPSS 0.005
CVE-1999-0024
DNS cache poisoning via BIND, by predictable query IDs.
Published 1999-09-29 · Modified
5.0EPSS 0.050
CVE-1999-0004
MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.
Published 2000-02-04 · Modified
5.0EPSS 0.028
CVE-1999-0010
Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
Published 1999-09-29 · Modified
5.0EPSS 0.024
1 / 2Next →