Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Sun Subscribe
Total 1705 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0234 1 Sun 2 Cobalt Raq 2, Cobalt Raq 3i 2008-09-10 5.0 MEDIUM N/A
The default configuration of Cobalt RaQ2 and RaQ3 as specified in access.conf allows remote attackers to view sensitive contents of a .htaccess file.
CVE-2000-0174 1 Sun 1 Staroffice 2008-09-10 5.0 MEDIUM N/A
StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0210 1 Sun 1 Workshop 2008-09-10 1.2 LOW N/A
The lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary files.
CVE-2000-0164 1 Sun 1 Solaris Isp Server 2008-09-10 7.2 HIGH N/A
The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords.
CVE-2000-0117 1 Sun 3 Cobalt Raq, Cobalt Raq 2, Cobalt Raq 3i 2008-09-10 7.2 HIGH N/A
The siteUserMod.cgi program in Cobalt RaQ2 servers allows any Site Administrator to modify passwords for other users, site administrators, and possibly admin (root).
CVE-1999-1468 4 Cray, Next, Sgi and 1 more 4 Unicos, Next, Irix and 1 more 2008-09-10 6.2 MEDIUM N/A
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable.
CVE-2008-3440 1 Sun 1 Java 2008-09-09 7.5 HIGH N/A
Sun Java 1.6.0_03 and earlier versions, and possibly later versions, does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as demonstrated by evilgrade and DNS cache poisoning.
CVE-1999-0831 4 Cobalt, Debian, Sun and 1 more 6 Qube, Debian Linux, Cobalt Raq and 3 more 2008-09-09 5.0 MEDIUM N/A
Denial of service in Linux syslogd via a large number of connections.
CVE-1999-0797 1 Sun 1 Sunos 2008-09-09 2.6 LOW N/A
NIS finger allows an attacker to conduct a denial of service via a large number of finger requests, resulting in a large number of NIS queries.
CVE-1999-0722 1 Sun 1 Cobalt Raq 2 2008-09-09 10.0 HIGH N/A
The default configuration of Cobalt RaQ2 servers allows remote users to install arbitrary software packages.
CVE-1999-0408 1 Sun 1 Cobalt Raq 2008-09-09 10.0 HIGH N/A
Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server.
CVE-1999-0209 1 Sun 1 Sunos 2008-09-09 5.0 MEDIUM N/A
The SunView (SunTools) selection_svc facility allows remote users to read files.
CVE-1999-0298 2 Slackware, Sun 2 Slackware Linux, Sunos 2008-09-09 7.5 HIGH N/A
ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack.
CVE-1999-0019 7 Data General, Ibm, Ncr and 4 more 10 Dg Ux, Aix, Mp-ras and 7 more 2008-09-09 5.0 MEDIUM N/A
Delete or create a file via rpc.statd, due to invalid information.
CVE-1999-0016 6 Cisco, Gnu, Hp and 3 more 8 Ios, Inet, Hp-ux and 5 more 2008-09-09 5.0 MEDIUM N/A
Land IP denial of service.
CVE-1999-0032 5 Bsdi, Freebsd, Next and 2 more 5 Bsd Os, Freebsd, Nextstep and 2 more 2008-09-09 7.2 HIGH N/A
Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option.
CVE-1999-0057 5 Eric Allman, Freebsd, Hp and 2 more 7 Vacation, Freebsd, Hp-ux and 4 more 2008-09-09 7.5 HIGH N/A
Vacation program allows command execution by remote users through a sendmail command.
CVE-1999-0134 1 Sun 1 Sunos 2008-09-09 7.2 HIGH N/A
vold in Solaris 2.x allows local users to gain root access.
CVE-1999-0164 1 Sun 1 Sunos 2008-09-09 6.2 MEDIUM N/A
A race condition in the Solaris ps command allows an attacker to overwrite critical files.
CVE-1999-0186 1 Sun 1 Solaris 2008-09-09 10.0 HIGH N/A
In Solaris, an SNMP subagent has a default community string that allows remote attackers to execute arbitrary commands as root, or modify system parameters.