Sun Opensolaris vulnerabilities
108 known vulnerabilities affecting sun/opensolaris.
Total CVEs
108
CISA KEV
0
Public exploits
7
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH34MEDIUM61LOW6
Vulnerabilities
Page 1 of 6
CVE-2007-5365P2HIGHCVSS 7.2PoCvsnv_01vsnv_02+100 more2007-10-11
CVE-2007-5365 [HIGH] CWE-119 CVE-2007-5365: Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 throug
Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 through 4.2, and some other dhcpd implementations based on ISC dhcp-2, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a DHCP request specifying a maximum message size smaller than the minimum IP MTU.
nvd
CVE-2008-0964P2CRITICALCVSS 9.3PoC≤ build_snv_95vbuild_snv_01+9 more2008-08-08
CVE-2008-0964 [CRITICAL] CWE-119 CVE-2008-0964: Multiple stack-based buffer overflows in snoop on Sun Solaris 8 through 10 and OpenSolaris before sn
Multiple stack-based buffer overflows in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via a crafted SMB packet.
nvd
CVE-2015-6319P2CRITICALCVSS 9.8vsnv_1242016-01-27
CVE-2015-6319 [CRITICAL] CWE-89 CVE-2015-6319: SQL injection vulnerability in the web-based management interface on Cisco RV220W devices allows rem
SQL injection vulnerability in the web-based management interface on Cisco RV220W devices allows remote attackers to execute arbitrary SQL commands via a crafted header in an HTTP request, aka Bug ID CSCuv29574.
nvd
CVE-2016-1291P2CRITICALCVSS 9.8vsnv_1242016-04-06
CVE-2016-1291 [CRITICAL] CWE-20 CVE-2016-1291: Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM
Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM) 1.2 allow remote attackers to execute arbitrary code via crafted deserialized data in an HTTP POST request, aka Bug ID CSCuw03192.
nvd
CVE-2008-5010P3CRITICALCVSS 10.0PoC≤ snv_102vsnv_01+100 more2008-11-10
CVE-2008-5010 [CRITICAL] CVE-2008-5010: in.dhcpd in the DHCP implementation in Sun Solaris 8 through 10, and OpenSolaris before snv_103, all
in.dhcpd in the DHCP implementation in Sun Solaris 8 through 10, and OpenSolaris before snv_103, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via unknown DHCP requests related to the "number of offers," aka Bug ID 6713805.
nvd
CVE-2009-0304P3HIGHCVSS 7.8PoC≤ snv_107vsnv_01+106 more2009-01-27
CVE-2009-0304 [HIGH] CVE-2009-0304: The kernel in Sun Solaris 10 and 11 snv_101b, and OpenSolaris before snv_108, allows remote attacker
The kernel in Sun Solaris 10 and 11 snv_101b, and OpenSolaris before snv_108, allows remote attackers to cause a denial of service (system crash) via a crafted IPv6 packet, related to an "insufficient validation security vulnerability," as demonstrated by SunOSipv6.c.
nvd
CVE-2016-1329P3CRITICALCVSS 9.8vsnv_1242016-03-03
CVE-2016-1329 [CRITICAL] CWE-287 CVE-2016-1329: Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5
Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5) and 6.0(2)A7(1) on Nexus 3500 devices has hardcoded credentials, which allows remote attackers to obtain root privileges via a (1) TELNET or (2) SSH session, aka Bug ID CSCuy25800.
nvd
CVE-2008-5689P4HIGHCVSS 7.2PoCvsnv_01vsnv_02+77 more2008-12-19
CVE-2008-5689 [HIGH] CWE-399 CVE-2008-5689: tun in IP Tunnel in Solaris 10 and OpenSolaris snv_01 through snv_76 allows local users to cause a d
tun in IP Tunnel in Solaris 10 and OpenSolaris snv_01 through snv_76 allows local users to cause a denial of service (panic) and possibly execute arbitrary code via a crafted SIOCGTUNPARAM IOCTL request, which triggers a NULL pointer dereference.
nvd
CVE-2008-0965P3CRITICALCVSS 9.3≤ build_snv_95vbuild_snv_01+9 more2008-08-08
CVE-2008-0965 [CRITICAL] CWE-134 CVE-2008-0965: Multiple format string vulnerabilities in snoop on Sun Solaris 8 through 10 and OpenSolaris before s
Multiple format string vulnerabilities in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via format string specifiers in an SMB packet.
nvd
CVE-2009-2296P3CRITICALCVSS 10.0≤ snv_95≤ snv_118+116 more2009-07-02
CVE-2009-2296 [CRITICAL] CVE-2009-2296: The NFSv4 server kernel module in Sun Solaris 10, and OpenSolaris before snv_119, does not properly
The NFSv4 server kernel module in Sun Solaris 10, and OpenSolaris before snv_119, does not properly implement the nfs_portmon setting, which allows remote attackers to access shares, and read, create, and modify arbitrary files, via unspecified vectors.
nvd
CVE-2016-1302P3HIGHCVSS 8.8vsnv_1242016-02-07
CVE-2016-1302 [HIGH] CWE-284 CVE-2016-1302: Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1
Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1.1 before 1.1(1j) and Nexus 9000 ACI Mode switches with software before 11.0(3h) and 11.1 before 11.1(1j) allow remote authenticated users to bypass intended RBAC restrictions via crafted REST requests, aka Bug ID CSCut12998.
nvd
CVE-2016-1290P3HIGHCVSS 8.1vsnv_1242016-04-06
CVE-2016-1290 [HIGH] CWE-264 CVE-2016-1290: The web API in Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Networ
The web API in Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM) 1.2 allows remote authenticated users to bypass intended RBAC restrictions and gain privileges via an HTTP request that is inconsistent with a pattern filter, aka Bug ID CSCuy10227.
nvd
CVE-2015-0718P3HIGHCVSS 7.5vsnv_1242016-03-03
CVE-2015-0718 [HIGH] CWE-399 CVE-2015-0718: Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Comp
Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Computing System (UCS) platforms allows remote attackers to cause a denial of service (TCP stack reload) by sending crafted TCP packets to a device that has a TIME_WAIT TCP session, aka Bug ID CSCub70579.
nvd
CVE-2008-7300P3HIGHCVSS 8.5vbuild_snv_39vbuild_snv_47+3 more2011-10-05
CVE-2008-7300 [HIGH] CWE-264 CVE-2008-7300: The labeled networking implementation in Solaris Trusted Extensions in Sun Solaris 10 and OpenSolari
The labeled networking implementation in Solaris Trusted Extensions in Sun Solaris 10 and OpenSolaris snv_39 through snv_67, when a labeled zone is in the installed state, allows remote authenticated users to bypass a Mandatory Access Control (MAC) policy and obtain access to the global zone.
nvd
CVE-2016-1350P3HIGHCVSS 7.5vsnv_1242016-03-26
CVE-2016-1350 [HIGH] CWE-399 CVE-2016-1350: Cisco IOS 15.3 and 15.4, Cisco IOS XE 3.8 through 3.11, and Cisco Unified Communications Manager all
Cisco IOS 15.3 and 15.4, Cisco IOS XE 3.8 through 3.11, and Cisco Unified Communications Manager allow remote attackers to cause a denial of service (device reload) via malformed SIP messages, aka Bug ID CSCuj23293.
nvd
CVE-2015-6313P3HIGHCVSS 7.5vsnv_1242016-04-06
CVE-2015-6313 [HIGH] CWE-399 CVE-2015-6313: Cisco TelePresence Server 4.1(2.29) through 4.2(4.17) on 7010; Mobility Services Engine (MSE) 8710;
Cisco TelePresence Server 4.1(2.29) through 4.2(4.17) on 7010; Mobility Services Engine (MSE) 8710; Multiparty Media 310, 320, and 820; and Virtual Machine (VM) devices allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted HTTP requests that are not followed by an unspecified negotiation, aka Bug ID CSCuv4
nvd
CVE-2016-1349P3HIGHCVSS 7.5vsnv_1242016-03-26
CVE-2016-1349 [HIGH] CWE-399 CVE-2016-1349: The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7
The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7 allows remote attackers to cause a denial of service (device reload) via crafted image list parameters in a Smart Install packet, aka Bug ID CSCuv45410.
nvd
CVE-2016-1348P3HIGHCVSS 7.5vsnv_1242016-03-26
CVE-2016-1348 [HIGH] CWE-399 CVE-2016-1348: Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of
Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus55821.
nvd
CVE-2009-3839P3MEDIUMCVSS 6.8vsnv_37vsnv_38+88 more2009-11-02
CVE-2009-3839 [MEDIUM] CVE-2009-3839: Unspecified vulnerability in the Solaris Trusted Extensions Policy configuration in Sun Solaris 10,
Unspecified vulnerability in the Solaris Trusted Extensions Policy configuration in Sun Solaris 10, and OpenSolaris snv_37 through snv_125, might allow remote attackers to execute arbitrary code by leveraging access to the X server.
nvd
CVE-2010-0453P4MEDIUMCVSS 4.9PoCvsnv_69vsnv_70+63 more2010-02-03
CVE-2010-0453 [MEDIUM] CWE-20 CVE-2010-0453: The ucode_ioctl function in intel/io/ucode_drv.c in Sun Solaris 10 and OpenSolaris snv_69 through sn
The ucode_ioctl function in intel/io/ucode_drv.c in Sun Solaris 10 and OpenSolaris snv_69 through snv_133, when running on x86 architectures, allows local users to cause a denial of service (panic) via a request with a 0 size value to the UCODE_GET_VERSION IOCTL, which triggers a NULL pointer dereference in the ucode_get_rev function, related to retrie
nvd
1 / 6Next →