| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| ppl program in HP-UX allows local users to create root files through symlinks. |
| vhe_u_mnt program in HP-UX allows local users to create root files through symlinks. |
| SGI syserr program allows local users to corrupt files. |
| SGI permissions program allows local users to gain root privileges. |
| Digital Unix 4.0 has a buffer overflow in the inc program of the mh package. |
| ptylogin in Unix systems allows users to perform a denial of service by locking out modems, dial out with that modem, or obtain passwords. |
| NetWare version of LaserFiche stores usernames and passwords unencrypted, and allows administrative changes without logging. |
| Microsoft Access 97 stores a database password as plaintext in a foreign mdb, allowing access to data. |
| The metamail package allows remote command execution using shell metacharacters that are not quoted in a mailcap entry. |
| Linux ftpwatch program allows local users to gain root privileges. |
| Lynx allows a local user to overwrite sensitive files through /tmp symlinks. |
| Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's process tables through multiple connections to network services. |
| Denial of service in Linux 2.2.0 running the ldd command on a core file. |
| Buffer overflow in gnuplot in Linux version 3.5 allows local users to obtain root access. |
| Vulnerability in hpterm on HP-UX 10.20 allows local users to gain additional privileges. |
| umapfs allows local users to gain root privileges by changing their uid through a malicious mount_umap program. |
| Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port. |
| The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server via exprcalc.cfm, which does not restrict access to the server properly. |
| Local users can perform a denial of service in Alpha Linux, using MILO to force a reboot. |
| Local users can perform a denial of service in Tripwire 1.2 and earlier using long filenames. |