Sun Sunos vulnerabilities
537 known vulnerabilities affecting sun/sunos.
Total CVEs
537
CISA KEV
0
Public exploits
105
Exploited in wild
0
Severity breakdown
CRITICAL51HIGH178MEDIUM217LOW91
Vulnerabilities
Page 21 of 27
CVE-2000-0407HIGHCVSS 7.2PoCv5.7v5.82000-05-12
CVE-2000-0407 [HIGH] CVE-2000-0407: Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long
Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option.
nvd
CVE-2000-0317HIGHCVSS 7.2PoCv5.72000-04-24
CVE-2000-0317 [HIGH] CVE-2000-0317: Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
nvd
CVE-2000-0316HIGHCVSS 7.2PoCv5.72000-04-24
CVE-2000-0316 [HIGH] CVE-2000-0316: Buffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option.
Buffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option.
nvd
CVE-2000-0337HIGHCVSS 7.2PoCv5.7v5.82000-04-24
CVE-2000-0337 [HIGH] CVE-2000-0337: Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long
Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter.
nvd
CVE-2000-0055HIGHCVSS 7.2v5.3v5.4+3 more2000-01-06
CVE-2000-0055 [HIGH] CVE-2000-0055: Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n opti
Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option.
nvd
CVE-1999-1584CRITICALCVSS 10.0v4.1.1v4.1.2+2 more1999-12-31
CVE-1999-1584 [CRITICAL] CVE-1999-1584: Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid
Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environment variables, a different vulnerability than CVE-1999-1586.
nvd
CVE-1999-1585HIGHCVSS 7.2v5.01999-12-31
CVE-1999-1585 [HIGH] CVE-1999-1585: The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged sh
The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with physical access to gain root privileges.
nvd
CVE-1999-1586HIGHCVSS 7.2v4.1.1v4.1.2+2 more1999-12-31
CVE-1999-1586 [HIGH] CVE-1999-1586: loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allow
loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584.
nvd
CVE-1999-1102LOWCVSS 2.1≤ 4.1.11999-12-31
CVE-1999-1102 [LOW] CVE-1999-1102: lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to
lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times.
nvd
CVE-1999-1587LOWCVSS 2.1PoCv5.81999-12-31
CVE-1999-1587 [LOW] CVE-1999-1587: /usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to
/usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to view the environment variables and values of arbitrary processes via the -e option.
nvd
CVE-2000-0032CRITICALCVSS 10.0PoCv5.71999-12-22
CVE-2000-0032 [CRITICAL] CVE-2000-0032: Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var
Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database.
nvd
CVE-2000-0030MEDIUMCVSS 5.0v5.71999-12-22
CVE-2000-0030 [MEDIUM] CVE-2000-0030: Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /v
Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database.
nvd
CVE-1999-0977CRITICALCVSS 10.0PoCv5.5v5.5.1+1 more1999-12-10
CVE-1999-0977 [CRITICAL] CVE-1999-0977: Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PR
Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request.
nvd
CVE-1999-0974CRITICALCVSS 10.0v5.4v5.5+2 more1999-12-09
CVE-1999-0974 [CRITICAL] CVE-1999-0974: Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA reques
Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service.
nvd
CVE-1999-0973CRITICALCVSS 10.0PoCv5.3v5.4+3 more1999-12-07
CVE-1999-0973 [CRITICAL] CVE-1999-0973: Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long
Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode.
nvd
CVE-1999-0860LOWCVSS 2.1PoCv5.5.1v5.71999-12-01
CVE-1999-0860 [LOW] CVE-1999-0860: Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable a
Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack.
nvd
CVE-1999-0859LOWCVSS 2.1PoCv5.5.1v5.71999-12-01
CVE-1999-0859 [LOW] CVE-1999-0859: Solaris arp allows local users to read files via the -f parameter, which lists lines in the file tha
Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse properly.
nvd
CVE-1999-0841HIGHCVSS 7.2PoCv5.71999-11-30
CVE-1999-0841 [HIGH] CVE-1999-0841: Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-T
Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type.
nvd
CVE-1999-0840HIGHCVSS 7.2v5.71999-11-30
CVE-1999-0840 [HIGH] CVE-1999-0840: Buffer overflow in CDE dtmail and dtmailpr programs allows local users to gain privileges via a long
Buffer overflow in CDE dtmail and dtmailpr programs allows local users to gain privileges via a long -f option.
nvd
CVE-1999-0818HIGHCVSS 7.2PoCv5.71999-11-20
CVE-1999-0818 [HIGH] CVE-1999-0818: Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable.
Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable.
nvd