Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
–

184 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4.6)0.34%—SCO OpenserverSCO Unixware14/1/200416/6/2026
Unknown vulnerability in chroot on SCO UnixWare 7.1.1 through 7.1.4 allows local users to escape the chroot jail and conduct unauthorized activities.
ModificadaMedia (4.3)3.2%—ISC BindNixu NamesurferCompaq Tru64Freebsd+615/12/200316/6/2026
ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.
ModificadaMedia (4.6)0.37%—SCO Open UnixSCO Unixware15/12/200316/6/2026
SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local users to bypass protections for the "as" address space file for a process ID (PID) by obtaining a procfs file descriptor for the file and calling execve() on a setuid or setgid program, which leaves the descriptor open to the user.
ModificadaAlta (7.2)1.4%💥 ExploitSCO Open UnixSCO Unixware1/12/200316/6/2026
Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3) LOGNAME.
ModificadaMedia (5)2.1%—Caldera Openlinux ServerCaldera Openlinux WorkstationCaldera OpenserverSCO Unixware20/10/200316/6/2026
Docview before 1.1-18 in Caldera OpenLinux 3.1.1, SCO Linux 4.0, OpenServer 5.0.7, configures the Apache web server in a way that allows remote attackers to read arbitrary publicly readable files via a certain URL, possibly related to rewrite rules.
ModificadaAlta (7.5)3.0%—Immunix16/6/200316/6/2026
Buffer overflow in url_filename function for wget 1.8.1 allows attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long URL.
ModificadaAlta (7.5)2.5%—SCO Open UnixSCO Unixware31/12/200216/6/2026
Buffer overflow in rpc.cmsd in SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows remote attackers to execute arbitrary commands via a long parameter to rtable_create (procedure 21).
ModificadaMedia (4.6)0.46%—Safe.pmSUN LinuxSGI IrixRedhat Enterprise Linux+511/12/200216/6/2026
Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between successive calls.
ModificadaBaja (2.1)0.33%—Caldera UnixwareCaldera Openunix4/11/200216/6/2026
SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows local users to cause a denial of service via an rcp call on /proc.
ModificadaAlta (7.5)3.3%—Caldera UnixwareCaldera OpenunixSunos4/10/200216/6/2026
Multiple buffer overflows in in.rarpd (ARP server) on Solaris, and possibly other operating systems including Caldera UnixWare and Open UNIX, allow remote attackers to execute arbitrary code, possibly via the functions (1) syserr and (2) error.
ModificadaAlta (7.5)2.8%—Caldera UnixwareCaldera OpenunixSunos4/10/200216/6/2026
Multiple format string vulnerabilities in in.rarpd (ARP server) on Solaris, Caldera UnixWare and Open UNIX, and possibly other operating systems, allows remote attackers to execute arbitrary code via format strings that are not properly handled in the functions (1) syserr and (2) error.
ModificadaAlta (7.2)0.46%—Caldera UnixwareCaldera Openunix24/9/200216/6/2026
Buffer overflow in ndcfg command for UnixWare 7.1.1 and Open UNIX 8.0.0 allows local users to execute arbitrary code via a long command line.
ModificadaAlta (10)2.0%—Caldera UnixwareCaldera Openunix24/9/200216/6/2026
Buffer overflow in X server (Xsco) in OpenUNIX 8.0.0 and UnixWare 7.1.1, possibly related to XBM/xkbcomp capabilities.
ModificadaAlta (7.2)0.71%💥 ExploitCaldera UnixwareCaldera Openunix24/9/200216/6/2026
X server (Xsco) in OpenUNIX 8.0.0 and UnixWare 7.1.1 does not drop privileges before calling programs such as xkbcomp using popen, which could allow local users to gain privileges.
ModificadaAlta (10)23%—Caldera UnixwareXI Graphics DextopCaldera OpenunixCompaq Tru64+45/9/200216/6/2026
Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.
ModificadaAlta (7.2)0.36%—Caldera UnixwareCaldera Openunix12/8/200216/6/2026
Vulnerability in pppd on UnixWare 7.1.1 and Open UNIX 8.0.0 allows local users to gain root privileges via (1) ppptalk or (2) ppp, a different vulnerability than CVE-2002-0824.
ModificadaAlta (7.2)0.46%—Caldera UnixwareCaldera Openunix12/8/200216/6/2026
Buffer overflow in X11 library (libX11) on Caldera Open UNIX 8.0.0, UnixWare 7.1.1, and possibly other operating systems, allows local users to gain root privileges via a long -xrm argument to programs such as (1) dtterm or (2) xterm.
ModificadaAlta (7.2)0.35%—EmumailEmumail RED HAT LinuxEmumail Unix12/8/200216/6/2026
EMU Webmail allows local users to execute arbitrary programs via a .. (dot dot) in the HTTP Host header that points to a Trojan horse configuration file that contains a pageroot specifier that contains shell metacharacters.
ModificadaMedia (5)4.1%—EmumailEmumail RED HAT LinuxEmumail Unix12/8/200216/6/2026
Directory traversal vulnerability in emumail.cgi in EMU Webmail 4.5.x and 5.1.0 allows remote attackers to read arbitrary files or list arbitrary directories via a .. (dot dot) in the type parameter.
ModificadaAlta (7.2)0.37%—ImmunixNetbsdOpenbsdRedhat Linux12/8/200216/6/2026
Format string vulnerability in startprinting() function of printjob.c in BSD-based lpr lpd package may allow local users to gain privileges via an improper syslog call that uses format strings from the checkremote() call.
ModificadaAlta (7.2)9.4%—Caldera UnixwareXI Graphics DextopSGI IrixCaldera Openunix+523/7/200216/6/2026
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
ModificadaAlta (7.5)6.6%—Caldera UnixwareXI Graphics DextopSGI IrixCaldera Openunix+523/7/200216/6/2026
CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.
ModificadaAlta (10)4.5%💥 ExploitCaldera UnixwareCaldera Openunix31/5/200216/6/2026
Vulnerability in webtop in UnixWare 7.1.1 and Open UNIX 8.0.0 allows local and possibly remote attackers to gain root privileges via shell metacharacters in the -c argument for (1) in scoadminreg.cgi or (2) service_action.cgi.
ModificadaAlta (7.2)0.97%💥 ExploitCaldera Unixware29/5/200216/6/2026
Format string vulnerability in the message catalog library functions in UnixWare 7.1.1 allows local users to gain privileges by modifying the LC_MESSAGE environment variable to read other message catalogs containing format strings from setuid programs such as vxprint.
ModificadaAlta (7.2)0.35%—Caldera Unixware25/3/200216/6/2026
CDE dtlogin in Caldera UnixWare 7.1.0, and possibly other operating systems, allows local users to gain privileges via a symlink attack on /var/dt/Xerrors since /var/dt is world-writable.
Orbitaley — Vulnerabilidades