| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Sun/Solaris utmp file allows local users to gain root access if it is writable by users other than root. |
| The dip program on many Linux systems allows local users to gain root access via a buffer overflow. |
| The DG/UX finger daemon allows remote command execution through shell metacharacters. |
| A race condition in the Solaris ps command allows an attacker to overwrite critical files. |
| NFS allows attackers to read and write any file on the system by specifying a false UID. |
| Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password. |
| Denial of service in RPC portmapper allows attackers to register or unregister RPC services or spoof RPC services using a spoofed source IP address such as 127.0.0.1. |
| Sendmail 8.6.9 allows remote attackers to execute root commands, using ident. |
| Routed allows attackers to append data to files. |
| Livingston portmaster machines could be rebooted via a series of commands. |
| Denial of service in talk program allows remote attackers to disrupt a user's display. |
| Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection. |
| ioconfig on SGI IRIX 6.4 S2MP for Origin/Onyx2 allows local users to gain root access using relative pathnames. |
| NetBSD netstat command allows local users to access kernel memory. |
| The LDAP bind function in Exchange 5.5 has a buffer overflow that allows a remote attacker to conduct a denial of service or execute commands. |
| IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request. |
| The ffingerd 1.19 allows remote attackers to identify users on the target system based on its responses. |
| A Windows NT domain user or administrator account has a default, null, blank, or missing password. |
| A DNS server allows inverse queries. |
| HP OpenMail can be misconfigured to allow users to run arbitrary commands using malicious print requests. |