cbcvebase.

Sun Sunos vulnerabilities

537 known vulnerabilities affecting sun/sunos.

Total CVEs
537
CISA KEV
0
Public exploits
105
Exploited in wild
6
Severity breakdown
CRITICAL51HIGH177MEDIUM218LOW91

Vulnerabilities

Page 13 of 27
CVE-2004-1353P4HIGHCVSS 7.2v5.82004-10-19
CVE-2004-1353 [HIGH] CVE-2004-1353: Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), a Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), allows local users to execute certain commands with additional privileges.
nvd
CVE-2007-0470P4HIGHCVSS 7.2v5.82007-01-24
CVE-2007-0470 [HIGH] CVE-2007-0470: Multiple unspecified vulnerabilities in tip in Sun Solaris 8, 9, and 10 allow local users to gain uu Multiple unspecified vulnerabilities in tip in Sun Solaris 8, 9, and 10 allow local users to gain uucp account privileges via unspecified vectors.
nvd
CVE-2007-0503P4MEDIUMCVSS 6.9v5.82007-01-25
CVE-2007-0503 [MEDIUM] CVE-2007-0503: Unspecified vulnerability in kcms_calibrate in Sun Solaris 8 and 9 before 20071122 allows local user Unspecified vulnerability in kcms_calibrate in Sun Solaris 8 and 9 before 20071122 allows local users to execute arbitrary commands via unknown vectors.
nvd
CVE-2006-6495P4MEDIUMCVSS 6.6v5.82006-12-13
CVE-2006-6495 [MEDIUM] CVE-2006-6495: Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arb Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via large precision padding values in a format string specifier in the format parameter of the doprf function. NOTE: this issue normally does not cross privilege boundaries, except in cases of external introduction of malicious message files, or if
nvd
CVE-2012-3112P4MEDIUMCVSS 4.3v5.102012-07-17
CVE-2012-3112 [MEDIUM] CVE-2012-3112: Unspecified vulnerability in Oracle Sun Solaris 10 allows remote attackers to affect integrity via u Unspecified vulnerability in Oracle Sun Solaris 10 allows remote attackers to affect integrity via unknown vectors related to Solaris Management Console.
nvd
CVE-2014-4283P4MEDIUMCVSS 4.3v5.112014-10-15
CVE-2014-4283 [MEDIUM] CVE-2014-4283: Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect confidentiality Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect confidentiality via unknown vectors related to Automated Install Engine, a different vulnerability than CVE-2014-4277.
nvd
CVE-2002-1980P4HIGHCVSS 7.2v5.5.1v5.7+1 more2002-12-31
CVE-2002-1980 [HIGH] CVE-2002-1980: Buffer overflow in Volume Manager daemon (vold) of Sun Solaris 2.5.1 through 8 allows local users to Buffer overflow in Volume Manager daemon (vold) of Sun Solaris 2.5.1 through 8 allows local users to execute arbitrary code via unknown attack vectors.
nvd
CVE-1999-1192P4HIGHCVSS 7.2≤ 5.5.1v5.3+2 more1997-06-24
CVE-1999-1192 [HIGH] CVE-1999-1192: Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges vi Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.
nvd
CVE-2003-1082P4HIGHCVSS 7.2v5.7v5.82003-12-31
CVE-2003-1082 [HIGH] CVE-2003-1082: Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4705891, a different vulnerability than CVE-2003-1068.
nvd
CVE-2003-1067P4HIGHCVSS 7.2v5.7v5.82003-06-19
CVE-2003-1067 [HIGH] CVE-2003-1067: Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local users to gain root privileges via long arguments to Xsun or other programs that use these functions.
nvd
CVE-1999-1419P4HIGHCVSS 7.2v5.3v5.41997-07-30
CVE-1999-1419 [HIGH] CVE-1999-1419: Buffer overflow in nss_nisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gai Buffer overflow in nss_nisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gain root privileges.
nvd
CVE-1999-0136P4HIGHCVSS 7.2v5.5v5.5.11996-07-31
CVE-1999-0136 [HIGH] CVE-1999-0136: Kodak Color Management System (KCMS) on Solaris allows a local user to write to arbitrary files and Kodak Color Management System (KCMS) on Solaris allows a local user to write to arbitrary files and gain root access.
nvd
CVE-2002-0089P4HIGHCVSS 7.2v5.5v5.5.1+1 more2002-03-15
CVE-2002-0089 [HIGH] CVE-2002-0089: Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via long arguments to (1) the -d command line option, or (2) the PRODVERS argument in the .cdtoc file.
nvd
CVE-1999-0339P4HIGHCVSS 7.2v5.2v5.3+3 more1998-08-01
CVE-1999-0339 [HIGH] CVE-1999-0339: Buffer overflow in the libauth library in Solaris allows local users to gain additional privileges, Buffer overflow in the libauth library in Solaris allows local users to gain additional privileges, possibly root access.
nvd
CVE-1999-0135P4HIGHCVSS 7.2v5.5v5.5.11996-07-25
CVE-1999-0135 [HIGH] CVE-1999-0135: admintool in Solaris allows a local user to write to arbitrary files and gain root access. admintool in Solaris allows a local user to write to arbitrary files and gain root access.
nvd
CVE-1999-0966P4HIGHCVSS 7.2v5.51997-01-27
CVE-1999-0966 [HIGH] CVE-1999-0966: Buffer overflow in Solaris getopt in libc allows local users to gain root privileges via a long argv Buffer overflow in Solaris getopt in libc allows local users to gain root privileges via a long argv[0].
nvd
CVE-2003-1068P4HIGHCVSS 7.2v5.7v5.82003-06-06
CVE-2003-1068 [HIGH] CVE-2003-1068: Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different vulnerability than CVE-2003-1082.
nvd
CVE-2007-2529P4HIGHCVSS 7.2v5.102007-05-09
CVE-2007-2529 [HIGH] CVE-2007-2529: Integer signedness error in the acl (facl) system call in Solaris 10 before 20070507 allows local us Integer signedness error in the acl (facl) system call in Solaris 10 before 20070507 allows local users to cause a denial of service (kernel panic) and possibly gain privileges via a certain argument, related to ACE_SETACL.
nvd
CVE-2002-1590P4HIGHCVSS 7.2v5.82002-10-29
CVE-2002-1590 [HIGH] CWE-264 CVE-2002-1590: The Web-Based Enterprise Management (WBEM) packages (1) SUNWwbdoc, (2) SUNWwbcou, (3) SUNWwbdev and The Web-Based Enterprise Management (WBEM) packages (1) SUNWwbdoc, (2) SUNWwbcou, (3) SUNWwbdev and (4) SUNWmgapp packages, when installed using Solaris 8 Update 1/01 or later, install files with world or group write permissions, which allows local users to gain root privileges or cause a denial of service.
nvd
CVE-1999-1212P4HIGHCVSS 7.2v4.0.3v4.0.3c1991-03-27
CVE-1999-1212 [HIGH] CVE-1999-1212: Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges. Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges.
nvd
Sun Sunos vulnerabilities | cvebase