Sun Solaris vulnerabilities
429 known vulnerabilities affecting sun/solaris.
Total CVEs
429
CISA KEV
0
Public exploits
102
Exploited in wild
6
Severity breakdown
CRITICAL49HIGH153MEDIUM172LOW55
Vulnerabilities
Page 8 of 22
CVE-2008-2946P4HIGHCVSS 7.8v8v9+1 more2008-06-30
CVE-2008-2946 [HIGH] CWE-399 CVE-2008-2946: The SNMP-DMI mapper subagent daemon (aka snmpXdmid) in Solstice Enterprise Agents in Sun Solaris 8 t
The SNMP-DMI mapper subagent daemon (aka snmpXdmid) in Solstice Enterprise Agents in Sun Solaris 8 through 10 allows remote attackers to cause a denial of service (daemon crash) via malformed packets.
nvd
CVE-2008-5410P4HIGHCVSS 7.8v10.02008-12-10
CVE-2008-5410 [HIGH] CWE-310 CVE-2008-5410: The PK11_SESSION cache in the OpenSSL PKCS#11 engine in Sun Solaris 10 does not maintain reference c
The PK11_SESSION cache in the OpenSSL PKCS#11 engine in Sun Solaris 10 does not maintain reference counts for operations with asymmetric keys, which allows context-dependent attackers to cause a denial of service (failed cryptographic operations) via unspecified vectors, related to the (1) RSA_sign and (2) RSA_verify functions.
nvd
CVE-2009-2486P4HIGHCVSS 7.8v102009-07-16
CVE-2009-2486 [HIGH] CVE-2009-2486: Unspecified vulnerability in the SCTP implementation in Sun Solaris 10, and OpenSolaris before snv_1
Unspecified vulnerability in the SCTP implementation in Sun Solaris 10, and OpenSolaris before snv_120, allows remote attackers to cause a denial of service (panic) via unspecified packets.
nvd
CVE-2008-2089P4HIGHCVSS 7.8v102008-05-06
CVE-2008-2089 [HIGH] CWE-16 CVE-2008-2089: Unspecified vulnerability in the SCTP protocol implementation in Sun Solaris 10 allows remote attack
Unspecified vulnerability in the SCTP protocol implementation in Sun Solaris 10 allows remote attackers to cause a denial of service (panic) via a crafted SCTP packet.
nvd
CVE-2003-0064P4HIGHCVSS 7.5v2.5.1v2.6+3 more2003-03-03
CVE-2003-0064 [HIGH] CVE-2003-0064: The dtterm terminal emulator allows attackers to modify the window title via a certain character esc
The dtterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands.
nvd
CVE-2006-5073P4HIGHCVSS 7.8v9.0v10.02006-09-29
CVE-2006-5073 [HIGH] CVE-2006-5073: Unspecified vulnerability in Sun Solaris 8, 9 and 10 allows remote attackers to cause a denial of se
Unspecified vulnerability in Sun Solaris 8, 9 and 10 allows remote attackers to cause a denial of service (panic) via crafted IPv6 packets, a different vulnerability than CVE-2006-5013.
nvd
CVE-1999-0008P4CRITICALCVSS 10.0v2.61998-06-08
CVE-1999-0008 [CRITICAL] CVE-1999-0008: Buffer overflow in NIS+, in Sun's rpc.nisd program.
Buffer overflow in NIS+, in Sun's rpc.nisd program.
nvd
CVE-2006-5013P4HIGHCVSS 7.8v10.02006-09-27
CVE-2006-5013 [HIGH] CVE-2006-5013: Sun Solaris 10 before patch 118855-16 (20060925), when run on x64 systems using IPv6, allows remote
Sun Solaris 10 before patch 118855-16 (20060925), when run on x64 systems using IPv6, allows remote attackers to cause a denial of service (kernel panic) via crafted IPv6 packets.
nvd
CVE-2007-3248P4HIGHCVSS 7.8v10.02007-06-18
CVE-2007-3248 [HIGH] CVE-2007-3248: Unspecified vulnerability in Sun Solaris 10 before 20070614, when IPv6 interfaces are present but no
Unspecified vulnerability in Sun Solaris 10 before 20070614, when IPv6 interfaces are present but not configured for IPsec, allows remote attackers to cause a denial of service (system crash) via certain network traffic.
nvd
CVE-2008-5133P4MEDIUMCVSS 5.8v102008-11-18
CVE-2008-5133 [MEDIUM] CVE-2008-5133: ipnat in IP Filter in Sun Solaris 10 and OpenSolaris before snv_96, when running on a DNS server wit
ipnat in IP Filter in Sun Solaris 10 and OpenSolaris before snv_96, when running on a DNS server with Network Address Translation (NAT) configured, improperly changes the source port of a packet when the destination port is the DNS port, which allows remote attackers to bypass an intended CVE-2008-1447 protection mechanism and spoof the responses to DNS queri
nvd
CVE-1999-0065P4HIGHCVSS 7.5v2.4v2.5+2 more1998-08-31
CVE-1999-0065 [HIGH] CVE-1999-0065: Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute comm
Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands.
nvd
CVE-2007-5462P4HIGHCVSS 7.8v8.0v9.0+1 more2007-10-15
CVE-2007-5462 [HIGH] CWE-20 CVE-2007-5462: Unspecified vulnerability in the Sun Solaris RPC services library (librpcsvc) on Solaris 8 through 1
Unspecified vulnerability in the Sun Solaris RPC services library (librpcsvc) on Solaris 8 through 10 allows remote attackers to cause a denial of service (mountd crash) via unspecified packets to a server that exports many filesystems, and allows local users to cause a denial of service (automountd crash) via unspecified requests to mount filesystems fr
nvd
CVE-2002-0678P4HIGHCVSS 7.2v2.6v9.02002-07-23
CVE-2002-0678 [HIGH] CVE-2002-0678: CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a syml
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
nvd
CVE-1999-0687P4HIGHCVSS 7.5v2.4v2.5+3 more1999-09-13
CVE-1999-0687 [HIGH] CVE-1999-0687: The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execut
The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
nvd
CVE-1999-1423P4LOWCVSS 2.1PoCv2.4v2.5+2 more1997-06-26
CVE-1999-1423 [LOW] CVE-1999-1423: ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping r
ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g. via ping -i.
nvd
CVE-1999-0442P4LOWCVSS 2.1PoCv2.5v2.5.1+2 more1999-01-07
CVE-1999-0442 [LOW] CVE-1999-0442: Solaris ff.core allows local users to modify files.
Solaris ff.core allows local users to modify files.
nvd
CVE-1999-0254P4CRITICALCVSS 10.0v2.61998-11-02
CVE-1999-0254 [CRITICAL] CVE-1999-0254: A hidden SNMP community string in HP OpenView allows remote attackers to modify MIB tables and obtai
A hidden SNMP community string in HP OpenView allows remote attackers to modify MIB tables and obtain sensitive information.
nvd
CVE-1999-0860P4LOWCVSS 2.1PoCv2.5.1v2.6+1 more1999-12-01
CVE-1999-0860 [LOW] CVE-1999-0860: Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable a
Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack.
nvd
CVE-2001-1414P4HIGHCVSS 7.5v2.5.1v2.6+2 more2001-10-09
CVE-2001-1414 [HIGH] CVE-2001-1414: The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access,
The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access, which allows remote attackers to hide their activities, possibly when certain BSM audit files are not present under the FTP root.
nvd
CVE-2006-4306P4HIGHCVSS 7.2v8.0v9.02006-08-23
CVE-2006-4306 [HIGH] CVE-2006-4306: Unspecified vulnerability in Sun Solaris 8 and 9 before 20060821 allows local users to execute arbit
Unspecified vulnerability in Sun Solaris 8 and 9 before 20060821 allows local users to execute arbitrary commands via unspecified vectors, involving the default Role-Based Access Control (RBAC) settings in the "File System Management" profile.
nvd