VendorsScounixware7.0
Vulnerabilities

Sco Unixware 7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

20CVEs
CVE-1999-0368
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.398
CVE-1999-0009
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.290
CVE-1999-0011
Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
Published 1999-09-29 · Modified
10.0EPSS 0.055
CVE-1999-0836
UnixWare uidadmin allows local users to modify arbitrary files via a symlink attack.
Published 2000-06-02 · Modified
10.01 PoCEPSS 0.031
CVE-2000-0308
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.
Published 2001-05-07 · Modified
10.0EPSS 0.022
CVE-1999-0798
Buffer overflow in bootpd on OpenBSD, FreeBSD, and Linux systems via a malformed header type.
Published 2000-02-04 · Modified
10.0EPSS 0.016
CVE-2000-1014
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.
Published 2001-01-22 · Modified
7.51 PoCEPSS 0.115
CVE-1999-0830
Buffer overflow in SCO UnixWare Xsco command via a long argument.
Published 2000-02-04 · Modified
7.21 PoCEPSS 0.011
CVE-2000-0130
Buffer overflow in SCO scohelp program allows remote attackers to execute commands.
Published 2000-10-13 · Modified
7.2EPSS 0.010
CVE-1999-0988
UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack.
Published 2000-02-04 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0845
Buffer overflow in SCO su program allows local users to gain root access via a long username.
Published 2000-02-04 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0866
Buffer overflow in UnixWare xauto program allows local users to gain root privilege.
Published 2000-06-02 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0864
UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file.
Published 2000-06-02 · Modified
7.21 PoCEPSS 0.007
CVE-1999-0979
The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed.
Published 2000-01-04 · Modified
7.21 PoCEPSS 0.007
CVE-2000-0215
Vulnerability in SCO cu program in UnixWare 7.x allows local users to gain privileges.
Published 2000-04-10 · Modified
7.2EPSS 0.003
CVE-1999-0004
MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.
Published 2000-02-04 · Modified
5.0EPSS 0.028
CVE-1999-0010
Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
Published 1999-09-29 · Modified
5.0EPSS 0.024
CVE-2000-0842
The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.
Published 2000-10-18 · Modified
5.0EPSS 0.019
CVE-1999-0828
UnixWare pkg commands such as pkginfo, pkgcat, and pkgparam allow local users to read arbitrary files via the dacread permission.
Published 2000-02-04 · Modified
3.63 PoCEPSS 0.008
CVE-1999-0825
The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail.
Published 2000-02-04 · Modified
3.61 PoCEPSS 0.006