CVE-2003-1065
published 2003-07-23CVE-2003-1065: Unknown vulnerability in patches 108993-14 through 108993-19 and 108994-14 through 108994-19 for Solaris 8 may allow local users to cause a denial of service…
PriorityP46low2.1CVSS 2.0
AVLACLAuNCNINAP
EPSS
0.33%
25.4th percentile
Unknown vulnerability in patches 108993-14 through 108993-19 and 108994-14 through 108994-19 for Solaris 8 may allow local users to cause a denial of service (automountd crash).
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sun | sunos | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
2X ApplicationServer 10.1 - TuxSystem Class ActiveX Control Remote File Overwrite
exploitdb·2012-03-19
CVE-2012-1065 2X ApplicationServer 10.1 - TuxSystem Class ActiveX Control Remote File Overwrite
2X ApplicationServer 10.1 - TuxSystem Class ActiveX Control Remote File Overwrite
---
2X ApplicationServer 10.1 TuxSystem Class ActiveX Control TuxScripting.dll
ExportSettings Remote File Overwrite Vulnerability
tested against: Microsoft Windows Server 2003 r2 sp2
Internet Explorer 8
vendor description:
"2X Software is a global leader of desktop and application delivery,
remote access and cloud computing solutions."
2x homepage: http://www.2x.com/
download url: http://www.2x.com/applicationserver/download/
file tested: 2XAppServer.msi
Background:
The mentioned product installs an ActiveX control with
the following settings:
ProgID: TuxScripting.TuxSystem.1
CLSID: {5BD64392-DA66-4852-9715-CFBA98D25296}
Binary Path C:\Program Files\2X\ApplicationServer\TuxScripting.dll
Implements
Exploit-DB
Tutos 1.1 - File_New Arbitrary File Upload
exploitdb·2003-06-20
CVE-2003-0482 Tutos 1.1 - File_New Arbitrary File Upload
Tutos 1.1 - File_New Arbitrary File Upload
---
source: https://www.securityfocus.com/bid/8012/info
It has been reported that Tutos does not properly handle input to the file_new script. Because of this, an attacker may be able to upload arbitrary files to a vulnerable site.
We can upload via http://www.example.com/tutos/file/file_new.php?link_id=1065
The path is http://www.example.com/tutos/repository/[project number]/[file
number]/FILE
No writeups or analysis indexed.
http://sunsolve.sun.com/search/document.do?assetkey=1-26-55340-1http://www.securityfocus.com/bid/8253https://exchange.xforce.ibmcloud.com/vulnerabilities/19437https://exchange.xforce.ibmcloud.com/vulnerabilities/19441http://sunsolve.sun.com/search/document.do?assetkey=1-26-55340-1http://www.securityfocus.com/bid/8253https://exchange.xforce.ibmcloud.com/vulnerabilities/19437https://exchange.xforce.ibmcloud.com/vulnerabilities/19441
2003-07-23
Published