SCO
SCO Unixware: vulnerabilidades y CVE
SCO Unixware tiene 66 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE66
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2009-1552 | Alta (7.8) | 1.4% | — | 6 may 2009 | Unspecified vulnerability in the IGMP driver in SCO Unixware Release 7.1.4 Maintenance Pack 4 allows attackers to cause a denial of service (system panic) via unspecified vectors. |
| CVE-2008-6559 | Alta (7.2) | 0.80% | — | 30 mar 2009 | Merge mcd in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges via a crafted -d argument that contains .. (dot dot) sequences that point to a directory containing a file whose name… |
| CVE-2008-6558 | Alta (7.2) | 0.87% | — | 30 mar 2009 | Untrusted search path vulnerability in (1) hvdisp and (2) rcvm in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges by modifying the RELIANT_PATH environment variable to point to a… |
| CVE-2008-0310 | Media (6.9) | 1.0% | — | 7 abr 2008 | Directory traversal vulnerability in pkgadd in SCO UnixWare 7.1.4 before p534589 allows local users to create or append to arbitrary files via ".." sequences in an unspecified environment variable, probably PKGINST. |
| CVE-2008-1343 | Media (4.9) | 0.76% | — | 17 mar 2008 | Directory traversal vulnerability in (1) pkgadd and (2) pkgrm in SCO UnixWare 7.1.4 allows local users to gain privileges via unknown vectors. |
| CVE-2006-4655 | Media (4.6) | 0.90% | — | 9 sept 2006 | Buffer overflow in the Strcmp function in the XKEYBOARD extension in X Window System X11R6.4 and earlier, as used in SCO UnixWare 7.1.3 and Sun Solaris 8 through 10, allows local users to gain privileges via a long… |
| CVE-2005-2934 | Alta (7.2) | 0.84% | — | 31 dic 2005 | Unspecified vulnerability in ptrace in SCO UnixWare 7.1.3 and 7.1.4 allows local users to gain privileges via unspecified vectors. |
| CVE-2005-3903 | Media (4.6) | 0.53% | — | 14 dic 2005 | Buffer overflow in uidadmin in SCO Unixware 7.1.3 and 7.1.4 allows local users to execute arbitrary code via a -S (scheme) argument that specifies a large file, a different vulnerability than CVE-2001-1063. |
| CVE-2005-2927 | Alta (7.2) | 0.46% | — | 25 oct 2005 | Stack-based buffer overflow in ppp in SCO Unixware 7.1.3 and 7.1.4, and possibly earlier versions, allows local users to execute arbitrary code via a long argument to the (1) prompt or (2) defprompt command. |
| CVE-2005-2132 | Baja (2.1) | 0.55% | — | 3 ago 2005 | RPC portmapper (rpcbind) in SCO UnixWare 7.1.1 m5, 7.1.3 mp5, and 7.1.4 mp2 allows remote attackers or local users to cause a denial of service (lack of response) via multiple invalid portmap requests. |
| CVE-2005-0134 | Media (4.6) | 0.32% | — | 18 may 2005 | The X server in SCO UnixWare 7.1.1, 7.1.3, and 7.1.4 does not properly create socket directories in /tmp, which could allow attackers to hijack local sockets. |
| CVE-2005-0109 | Media (5.6) | 0.51% | — | 5 mar 2005 | Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the… |
| CVE-2004-1039 | Media (5) | 1.6% | — | 11 ene 2005 | The NFS mountd service on SCO UnixWare 7.1.1, 7.1.3, 7.1.4, and 7.0.1, and possibly other versions, when run from inetd, allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests,… |
| CVE-2004-0996 | Baja (2.1) | 1.1% | — | 10 ene 2005 | main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack. |
| CVE-2004-1307 | Alta (7.5) | 6.3% | — | 21 dic 2004 | Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which… |
| CVE-2004-1124 | Media (4.6) | 0.34% | — | 14 ene 2004 | Unknown vulnerability in chroot on SCO UnixWare 7.1.1 through 7.1.4 allows local users to escape the chroot jail and conduct unauthorized activities. |
| CVE-2003-0937 | Media (4.6) | 0.37% | — | 15 dic 2003 | SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local users to bypass protections for the "as" address space file for a process ID (PID) by obtaining a procfs file descriptor for the file and calling execve() on a… |
| CVE-2003-0914 | Media (4.3) | 3.2% | — | 15 dic 2003 | ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value. |
| CVE-2003-0834 | Alta (7.2) | 1.4% | — | 1 dic 2003 | Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3) LOGNAME. |
| CVE-2003-0658 | Media (5) | 2.1% | — | 20 oct 2003 | Docview before 1.1-18 in Caldera OpenLinux 3.1.1, SCO Linux 4.0, OpenServer 5.0.7, configures the Apache web server in a way that allows remote attackers to read arbitrary publicly readable files via a certain URL,… |
| CVE-2002-1998 | Alta (7.5) | 2.5% | — | 31 dic 2002 | Buffer overflow in rpc.cmsd in SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows remote attackers to execute arbitrary commands via a long parameter to rtable_create (procedure 21). |
| CVE-2002-1323 | Media (4.6) | 0.46% | — | 11 dic 2002 | Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between… |
| CVE-2001-1579 | Media (5) | 1.2% | — | 31 dic 2001 | The timed program (in.timed) in UnixWare 7 and OpenUnix 8.0.0 does not properly terminate certain strings with a null, which allows remote attackers to cause a denial of service. |
| CVE-2000-0351 | Media (4.6) | 0.31% | — | 12 mar 2001 | Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages. |
| CVE-2000-0308 | Alta (10) | 2.2% | — | 12 mar 2001 | Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges. |
| CVE-2000-0307 | Media (5) | 1.1% | — | 12 mar 2001 | Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024. |
| CVE-2000-0348 | Alta (10) | 1.5% | — | 12 mar 2001 | A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain root privileges. |
| CVE-2000-0349 | Media (5) | 1.1% | — | 12 mar 2001 | Vulnerability in the passthru driver in SCO UnixWare 7.1.0 allows an attacker to cause a denial of service. |
| CVE-2000-1014 | Alta (7.5) | 12% | — | 11 dic 2000 | Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter. |
| CVE-2000-0842 | Media (5) | 1.9% | — | 14 nov 2000 | The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack. |