Записи caldera
82 опубликованных записей вендора caldera.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 1,2 %
- Pre-auth RCE
- 13
- С записью об исправлении
- 1,2 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
82 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
64На этой неделе | CVE-2000-0917Готовый эксплойт | Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.caldera · openlinux ebuilder | Критическая10,0 | — | 78,7 % | 19 дек. 2000 г. |
52В плане | CVE-1999-0043Эксплойта нет | Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.isc · inn · CWE-78 | Критическая9,8 | — | 44,6 % | 4 дек. 1996 г. |
52В плане | CVE-1999-0368Proof of concept | Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a.proftpd project · proftpd | Критическая10,0 | — | 39,8 % | 9 февр. 1999 г. |
49В плане | CVE-1999-0009Proof of concept | Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.data general · dg ux | Критическая10,0 | — | 29,0 % | 8 апр. 1998 г. |
48В плане | CVE-1999-0002Proof of concept | Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.bsdi · bsd os · CWE-119 | Критическая10,0 | — | 27,9 % | 12 окт. 1998 г. |
47В плане | CVE-2002-0679Эксплойта нет | Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrcaldera · unixware | Критическая10,0 | — | 23,3 % | 5 сент. 2002 г. |
45В плане | CVE-2000-0491Proof of concept | Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a degnome · gdm | Критическая10,0 | — | 17,8 % | 24 мая 2000 г. |
45В плане | CVE-2000-0844Proof of concept | Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackecaldera · openlinux ebuilder · CWE-264 | Критическая10,0 | — | 15,6 % | 14 нояб. 2000 г. |
44В плане | CVE-1999-0042Proof of concept | Buffer overflow in University of Washington's implementation of IMAP and POP servers.university of washington · imap | Критическая10,0 | — | 12,7 % | 7 апр. 1997 г. |
43В плане | CVE-1999-0879Proof of concept | Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.bsdi · bsd os | Критическая10,0 | — | 9,7 % | 1 окт. 1999 г. |
42В плане | CVE-2001-0181Эксплойта нет | Format string vulnerability in the error logging code of DHCP server and client in Caldera Linux allows remote attackers to execute arbitrarcaldera · openlinux desktop | Критическая10,0 | — | 5,2 % | 26 мар. 2001 г. |
41В плане | CVE-2000-0370Эксплойта нет | The debug option in Caldera Linux smail allows remote attackers to execute commands via shell metacharacters in the -D option for the rmail caldera · openlinux | Критическая10,0 | — | 4,8 % | 29 янв. 1999 г. |
41В плане | CVE-2002-0311Proof of concept | Vulnerability in webtop in UnixWare 7.1.1 and Open UNIX 8.0.0 allows local and possibly remote attackers to gain root privileges via shell mcaldera · unixware | Критическая10,0 | — | 4,5 % | 31 мая 2002 г. |
41В плане | CVE-2014-2935Эксплойта нет | costview3/xmlrpc_server/xmlrpc.php in CostView in Caldera 9.20 allows remote attackers to execute arbitrary commands via shell metacharactercaldera · caldera · CWE-78 | Критическая10,0 | — | 4,4 % | 8 мая 2014 г. |
41В плане | CVE-2000-0374Эксплойта нет | The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, whcaldera · openlinux | Критическая10,0 | — | 4,3 % | 22 авг. 1999 г. |
41В плане | CVE-1999-0047Эксплойта нет | MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.eric allman · sendmail | Критическая10,0 | — | 3,1 % | 28 янв. 1997 г. |
41В плане | CVE-2001-1359Эксплойта нет | Volution clients 1.0.7 and earlier attempt to contact the computer creation daemon (CCD) when an LDAP authentication failure occurs, which acaldera · volution | Критическая10,0 | — | 2,8 % | 8 июн. 2001 г. |
41В плане | CVE-2001-0850Эксплойта нет | A configuration error in the libdb1 package in OpenLinux 3.1 uses insecure versions of the snprintf and vsnprintf functions, which could allcaldera · openlinux | Критическая10,0 | — | 2,3 % | 6 дек. 2001 г. |
41В плане | CVE-2002-0988Эксплойта нет | Buffer overflow in X server (Xsco) in OpenUNIX 8.0.0 and UnixWare 7.1.1, possibly related to XBM/xkbcomp capabilities.caldera · unixware | Критическая10,0 | — | 2,0 % | 24 сент. 2002 г. |
32Наблюдать | CVE-2002-0677Эксплойта нет | CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain pricaldera · unixware | Высокая7,5 | — | 6,6 % | 23 июл. 2002 г. |
31Наблюдать | CVE-2002-0678Эксплойта нет | CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file ucaldera · unixware | Высокая7,2 | — | 9,4 % | 23 июл. 2002 г. |
31Наблюдать | CVE-2002-0885Эксплойта нет | Multiple buffer overflows in in.rarpd (ARP server) on Solaris, and possibly other operating systems including Caldera UnixWare and Open UNIXcaldera · unixware | Высокая7,5 | — | 3,3 % | 4 окт. 2002 г. |
31Наблюдать | CVE-2001-0869Эксплойта нет | Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow rcaldera · openlinux workstation | Высокая7,5 | — | 3,0 % | 21 дек. 2001 г. |
31Наблюдать | CVE-2002-0884Эксплойта нет | Multiple format string vulnerabilities in in.rarpd (ARP server) on Solaris, Caldera UnixWare and Open UNIX, and possibly other operating syscaldera · unixware | Высокая7,5 | — | 2,8 % | 4 окт. 2002 г. |
31Наблюдать | CVE-1999-0439Эксплойта нет | Buffer overflow in procmail before version 3.12 allows remote or local attackers to execute commands via expansions in the procmailrc configprocmail · procmail | Высокая7,5 | — | 2,5 % | 5 апр. 1999 г. |
- CVE-2000-091764На этой неделе
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
КритическаяCVSS 10,0Готовый эксплойтEPSS 79 %caldera · openlinux ebuilder19 дек. 2000 г.
- CVE-1999-004352В плане
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
КритическаяCVSS 9,8Эксплойта нетEPSS 45 %isc · inn4 дек. 1996 г.
- CVE-1999-036852В плане
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a.
КритическаяCVSS 10,0Proof of conceptEPSS 40 %proftpd project · proftpd9 февр. 1999 г.
- CVE-1999-000949В плане
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
КритическаяCVSS 10,0Proof of conceptEPSS 29 %data general · dg ux8 апр. 1998 г.
- CVE-1999-000248В плане
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
КритическаяCVSS 10,0Proof of conceptEPSS 28 %bsdi · bsd os12 окт. 1998 г.
- CVE-2002-067947В плане
Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitr
КритическаяCVSS 10,0Эксплойта нетEPSS 23 %caldera · unixware5 сент. 2002 г.
- CVE-2000-049145В плане
Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a de
КритическаяCVSS 10,0Proof of conceptEPSS 18 %gnome · gdm24 мая 2000 г.
- CVE-2000-084445В плане
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attacke
КритическаяCVSS 10,0Proof of conceptEPSS 16 %caldera · openlinux ebuilder14 нояб. 2000 г.
- CVE-1999-004244В плане
Buffer overflow in University of Washington's implementation of IMAP and POP servers.
КритическаяCVSS 10,0Proof of conceptEPSS 13 %university of washington · imap7 апр. 1997 г.
- CVE-1999-087943В плане
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.
КритическаяCVSS 10,0Proof of conceptEPSS 10 %bsdi · bsd os1 окт. 1999 г.
- CVE-2001-018142В плане
Format string vulnerability in the error logging code of DHCP server and client in Caldera Linux allows remote attackers to execute arbitrar
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %caldera · openlinux desktop26 мар. 2001 г.
- CVE-2000-037041В плане
The debug option in Caldera Linux smail allows remote attackers to execute commands via shell metacharacters in the -D option for the rmail
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %caldera · openlinux29 янв. 1999 г.
- CVE-2002-031141В плане
Vulnerability in webtop in UnixWare 7.1.1 and Open UNIX 8.0.0 allows local and possibly remote attackers to gain root privileges via shell m
КритическаяCVSS 10,0Proof of conceptEPSS 5 %caldera · unixware31 мая 2002 г.
- CVE-2014-293541В плане
costview3/xmlrpc_server/xmlrpc.php in CostView in Caldera 9.20 allows remote attackers to execute arbitrary commands via shell metacharacter
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %caldera · caldera8 мая 2014 г.
- CVE-2000-037441В плане
The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, wh
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %caldera · openlinux22 авг. 1999 г.
- CVE-1999-004741В плане
MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %eric allman · sendmail28 янв. 1997 г.
- CVE-2001-135941В плане
Volution clients 1.0.7 and earlier attempt to contact the computer creation daemon (CCD) when an LDAP authentication failure occurs, which a
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %caldera · volution8 июн. 2001 г.
- CVE-2001-085041В плане
A configuration error in the libdb1 package in OpenLinux 3.1 uses insecure versions of the snprintf and vsnprintf functions, which could all
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %caldera · openlinux6 дек. 2001 г.
- CVE-2002-098841В плане
Buffer overflow in X server (Xsco) in OpenUNIX 8.0.0 and UnixWare 7.1.1, possibly related to XBM/xkbcomp capabilities.
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %caldera · unixware24 сент. 2002 г.
- CVE-2002-067732Наблюдать
CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain pri
ВысокаяCVSS 7,5Эксплойта нетEPSS 7 %caldera · unixware23 июл. 2002 г.
- CVE-2002-067831Наблюдать
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file u
ВысокаяCVSS 7,2Эксплойта нетEPSS 9 %caldera · unixware23 июл. 2002 г.
- CVE-2002-088531Наблюдать
Multiple buffer overflows in in.rarpd (ARP server) on Solaris, and possibly other operating systems including Caldera UnixWare and Open UNIX
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %caldera · unixware4 окт. 2002 г.
- CVE-2001-086931Наблюдать
Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow r
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %caldera · openlinux workstation21 дек. 2001 г.
- CVE-2002-088431Наблюдать
Multiple format string vulnerabilities in in.rarpd (ARP server) on Solaris, Caldera UnixWare and Open UNIX, and possibly other operating sys
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %caldera · unixware4 окт. 2002 г.
- CVE-1999-043931Наблюдать
Buffer overflow in procmail before version 3.12 allows remote or local attackers to execute commands via expansions in the procmailrc config
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %procmail · procmail5 апр. 1999 г.