Sun Sunos vulnerabilities
537 known vulnerabilities affecting sun/sunos.
Total CVEs
537
CISA KEV
0
Public exploits
105
Exploited in wild
6
Severity breakdown
CRITICAL51HIGH177MEDIUM218LOW91
Vulnerabilities
Page 13 of 27
CVE-2004-1353P4HIGHCVSS 7.2v5.82004-10-19
CVE-2004-1353 [HIGH] CVE-2004-1353: Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), a
Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), allows local users to execute certain commands with additional privileges.
nvd
CVE-2007-0470P4HIGHCVSS 7.2v5.82007-01-24
CVE-2007-0470 [HIGH] CVE-2007-0470: Multiple unspecified vulnerabilities in tip in Sun Solaris 8, 9, and 10 allow local users to gain uu
Multiple unspecified vulnerabilities in tip in Sun Solaris 8, 9, and 10 allow local users to gain uucp account privileges via unspecified vectors.
nvd
CVE-2007-0503P4MEDIUMCVSS 6.9v5.82007-01-25
CVE-2007-0503 [MEDIUM] CVE-2007-0503: Unspecified vulnerability in kcms_calibrate in Sun Solaris 8 and 9 before 20071122 allows local user
Unspecified vulnerability in kcms_calibrate in Sun Solaris 8 and 9 before 20071122 allows local users to execute arbitrary commands via unknown vectors.
nvd
CVE-2006-6495P4MEDIUMCVSS 6.6v5.82006-12-13
CVE-2006-6495 [MEDIUM] CVE-2006-6495: Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arb
Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via large precision padding values in a format string specifier in the format parameter of the doprf function. NOTE: this issue normally does not cross privilege boundaries, except in cases of external introduction of malicious message files, or if
nvd
CVE-2012-3112P4MEDIUMCVSS 4.3v5.102012-07-17
CVE-2012-3112 [MEDIUM] CVE-2012-3112: Unspecified vulnerability in Oracle Sun Solaris 10 allows remote attackers to affect integrity via u
Unspecified vulnerability in Oracle Sun Solaris 10 allows remote attackers to affect integrity via unknown vectors related to Solaris Management Console.
nvd
CVE-2014-4283P4MEDIUMCVSS 4.3v5.112014-10-15
CVE-2014-4283 [MEDIUM] CVE-2014-4283: Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect confidentiality
Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect confidentiality via unknown vectors related to Automated Install Engine, a different vulnerability than CVE-2014-4277.
nvd
CVE-2002-1980P4HIGHCVSS 7.2v5.5.1v5.7+1 more2002-12-31
CVE-2002-1980 [HIGH] CVE-2002-1980: Buffer overflow in Volume Manager daemon (vold) of Sun Solaris 2.5.1 through 8 allows local users to
Buffer overflow in Volume Manager daemon (vold) of Sun Solaris 2.5.1 through 8 allows local users to execute arbitrary code via unknown attack vectors.
nvd
CVE-1999-1192P4HIGHCVSS 7.2≤ 5.5.1v5.3+2 more1997-06-24
CVE-1999-1192 [HIGH] CVE-1999-1192: Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges vi
Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.
nvd
CVE-2003-1082P4HIGHCVSS 7.2v5.7v5.82003-12-31
CVE-2003-1082 [HIGH] CVE-2003-1082: Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges,
Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4705891, a different vulnerability than CVE-2003-1068.
nvd
CVE-2003-1067P4HIGHCVSS 7.2v5.7v5.82003-06-19
CVE-2003-1067 [HIGH] CVE-2003-1067: Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit
Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local users to gain root privileges via long arguments to Xsun or other programs that use these functions.
nvd
CVE-1999-1419P4HIGHCVSS 7.2v5.3v5.41997-07-30
CVE-1999-1419 [HIGH] CVE-1999-1419: Buffer overflow in nss_nisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gai
Buffer overflow in nss_nisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gain root privileges.
nvd
CVE-1999-0136P4HIGHCVSS 7.2v5.5v5.5.11996-07-31
CVE-1999-0136 [HIGH] CVE-1999-0136: Kodak Color Management System (KCMS) on Solaris allows a local user to write to arbitrary files and
Kodak Color Management System (KCMS) on Solaris allows a local user to write to arbitrary files and gain root access.
nvd
CVE-2002-0089P4HIGHCVSS 7.2v5.5v5.5.1+1 more2002-03-15
CVE-2002-0089 [HIGH] CVE-2002-0089: Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via
Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via long arguments to (1) the -d command line option, or (2) the PRODVERS argument in the .cdtoc file.
nvd
CVE-1999-0339P4HIGHCVSS 7.2v5.2v5.3+3 more1998-08-01
CVE-1999-0339 [HIGH] CVE-1999-0339: Buffer overflow in the libauth library in Solaris allows local users to gain additional privileges,
Buffer overflow in the libauth library in Solaris allows local users to gain additional privileges, possibly root access.
nvd
CVE-1999-0135P4HIGHCVSS 7.2v5.5v5.5.11996-07-25
CVE-1999-0135 [HIGH] CVE-1999-0135: admintool in Solaris allows a local user to write to arbitrary files and gain root access.
admintool in Solaris allows a local user to write to arbitrary files and gain root access.
nvd
CVE-1999-0966P4HIGHCVSS 7.2v5.51997-01-27
CVE-1999-0966 [HIGH] CVE-1999-0966: Buffer overflow in Solaris getopt in libc allows local users to gain root privileges via a long argv
Buffer overflow in Solaris getopt in libc allows local users to gain root privileges via a long argv[0].
nvd
CVE-2003-1068P4HIGHCVSS 7.2v5.7v5.82003-06-06
CVE-2003-1068 [HIGH] CVE-2003-1068: Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges,
Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different vulnerability than CVE-2003-1082.
nvd
CVE-2007-2529P4HIGHCVSS 7.2v5.102007-05-09
CVE-2007-2529 [HIGH] CVE-2007-2529: Integer signedness error in the acl (facl) system call in Solaris 10 before 20070507 allows local us
Integer signedness error in the acl (facl) system call in Solaris 10 before 20070507 allows local users to cause a denial of service (kernel panic) and possibly gain privileges via a certain argument, related to ACE_SETACL.
nvd
CVE-2002-1590P4HIGHCVSS 7.2v5.82002-10-29
CVE-2002-1590 [HIGH] CWE-264 CVE-2002-1590: The Web-Based Enterprise Management (WBEM) packages (1) SUNWwbdoc, (2) SUNWwbcou, (3) SUNWwbdev and
The Web-Based Enterprise Management (WBEM) packages (1) SUNWwbdoc, (2) SUNWwbcou, (3) SUNWwbdev and (4) SUNWmgapp packages, when installed using Solaris 8 Update 1/01 or later, install files with world or group write permissions, which allows local users to gain root privileges or cause a denial of service.
nvd
CVE-1999-1212P4HIGHCVSS 7.2v4.0.3v4.0.3c1991-03-27
CVE-1999-1212 [HIGH] CVE-1999-1212: Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges.
Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges.
nvd