cbcvebase.

Sun Sunos vulnerabilities

537 known vulnerabilities affecting sun/sunos.

Total CVEs
537
CISA KEV
0
Public exploits
105
Exploited in wild
6
Severity breakdown
CRITICAL51HIGH177MEDIUM218LOW91

Vulnerabilities

Page 12 of 27
CVE-2013-3787P4MEDIUMCVSS 4.3v5.10v5.112013-07-17
CVE-2013-3787 [MEDIUM] CVE-2013-3787: Unspecified vulnerability in Oracle Solaris 10 and 11 allows remote attackers to affect availability Unspecified vulnerability in Oracle Solaris 10 and 11 allows remote attackers to affect availability via unknown vectors related to Kernel.
nvd
CVE-1999-1580P4HIGHCVSS 7.2v4.1.1v4.1.2+5 more1995-08-23
CVE-1999-1580 [HIGH] CVE-1999-1580: SunOS sendmail 5.59 through 5.65 uses popen to process a forwarding host argument, which allows loca SunOS sendmail 5.59 through 5.65 uses popen to process a forwarding host argument, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable and passing crafted values to the -oR option.
nvd
CVE-2012-3131P4MEDIUMCVSS 4.3v5.9v5.10+1 more2012-07-17
CVE-2012-3131 [MEDIUM] CVE-2012-3131: Unspecified vulnerability in Oracle Sun Solaris 9, 10, and 11 allows remote attackers to affect conf Unspecified vulnerability in Oracle Sun Solaris 9, 10, and 11 allows remote attackers to affect confidentiality, related to Network/NFS.
nvd
CVE-2013-3752P4MEDIUMCVSS 4.3v5.112013-07-17
CVE-2013-3752 [MEDIUM] CVE-2013-3752: Unspecified vulnerability in Oracle Solaris 11 allows remote attackers to affect integrity via vecto Unspecified vulnerability in Oracle Solaris 11 allows remote attackers to affect integrity via vectors related to Service Management Facility (SMF).
nvd
CVE-2003-0999P4HIGHCVSS 7.2v5.7v5.82004-01-05
CVE-2003-0999 [HIGH] CVE-2003-0999: Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or read or write arbitrary files.
nvd
CVE-2004-0496P4HIGHCVSS 7.2v5.8v5.92004-12-06
CVE-2004-0496 [HIGH] CVE-2004-0496: Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access kernel memory, a different set of vulnerabilities than those identified in CVE-2004-0495, as found by the Sparse source code checking tool.
nvd
CVE-2012-3199P4HIGHCVSS 7.2v5.10v5.112012-10-17
CVE-2012-3199 [HIGH] CVE-2012-3199: Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect confidentiali Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Gnome Trusted Extension.
nvd
CVE-2006-4307P4HIGHCVSS 7.2v5.82006-08-23
CVE-2006-4307 [HIGH] CVE-2006-4307: Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local users to modify arbitrary files via unspecified vectors involving profiles that permit running format with elevated privileges, a different issue than CVE-2006-4306 and CVE-2006-4319.
nvd
CVE-2003-1059P4HIGHCVSS 7.2v5.5.1v5.7+1 more2003-11-20
CVE-2003-1059 [HIGH] CVE-2003-1059: Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9 Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9 allows local users to gain root access.
nvd
CVE-2011-2285P4HIGHCVSS 7.2v5.102011-07-21
CVE-2011-2285 [HIGH] CVE-2011-2285: Unspecified vulnerability in Oracle Solaris 10 allows local users to affect confidentiality, integri Unspecified vulnerability in Oracle Solaris 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Installer.
nvd
CVE-1999-0212P4HIGHCVSS 7.8v5.01998-04-29
CVE-1999-0212 [HIGH] CVE-1999-0212: Solaris rpc.mountd generates error messages that allow a remote attacker to determine what files are Solaris rpc.mountd generates error messages that allow a remote attacker to determine what files are on the server.
nvd
CVE-1999-0168P4HIGHCVSS 7.5v4.1.3v4.1.3c1992-06-04
CVE-1999-0168 [HIGH] CVE-1999-0168: The portmapper may act as a proxy and redirect service requests from an attacker, making the request The portmapper may act as a proxy and redirect service requests from an attacker, making the request appear to come from the local host, possibly bypassing authentication that would otherwise have taken place. For example, NFS file systems could be mounted through the portmapper despite export restrictions.
nvd
CVE-2014-0390P4MEDIUMCVSS 4.3v5.102014-01-15
CVE-2014-0390 [MEDIUM] CVE-2014-0390: Unspecified vulnerability in Oracle Solaris 10 allows remote attackers to affect integrity via unkno Unspecified vulnerability in Oracle Solaris 10 allows remote attackers to affect integrity via unknown vectors related to Java Web Console.
nvd
CVE-2013-5839P4MEDIUMCVSS 4.3v5.102013-10-16
CVE-2013-5839 [MEDIUM] CVE-2013-5839: Unspecified vulnerability in Oracle Solaris 10 allows remote attackers to affect integrity via unkno Unspecified vulnerability in Oracle Solaris 10 allows remote attackers to affect integrity via unknown vectors related to Oracle Java Web Console.
nvd
CVE-2012-3130P4MEDIUMCVSS 4.3v5.112012-07-17
CVE-2012-3130 [MEDIUM] CVE-2012-3130: Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect integrity via u Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect integrity via unknown vectors related to pkg.depotd.
nvd
CVE-1999-0318P4HIGHCVSS 7.2v5.5.1v5.7+1 more1997-03-01
CVE-1999-0318 [HIGH] CVE-1999-0318: Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable. Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.
nvd
CVE-2004-0780P4HIGHCVSS 7.2v5.82004-12-31
CVE-2004-0780 [HIGH] CVE-2004-0780: Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument.
nvd
CVE-2004-1352P4HIGHCVSS 7.2v5.7v5.82004-12-01
CVE-2004-1352 [HIGH] CVE-2004-1352: Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbit Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code.
nvd
CVE-2006-0901P4HIGHCVSS 7.2v5.82006-02-27
CVE-2006-0901 [HIGH] CVE-2006-0901: Unspecified vulnerability in the hsfs filesystem in Solaris 8, 9, and 10 allows unspecified attacker Unspecified vulnerability in the hsfs filesystem in Solaris 8, 9, and 10 allows unspecified attackers to cause a denial of service (panic) or execute arbitrary code.
nvd
CVE-2003-0092P4HIGHCVSS 7.2v5.5.1v5.7+1 more2003-04-02
CVE-2003-0092 [HIGH] CVE-2003-0092: Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to ga Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.
nvd
Sun Sunos vulnerabilities | cvebase