Skip to content
Noroxi

cray records

10 published records for vendor cray.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
10%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    10 records
    • Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.

      CriticalCVSS 10.0No exploitEPSS 3%

      bsdi · bsd osOct 19, 1995

    • The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain root privileges.

      CriticalCVSS 10.0No exploitEPSS 2%

      sgi · irixJul 19, 1999

    • CVE-2003-0028
      35Monitor

      Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived fr

      HighCVSS 7.5No exploitEPSS 15%

      gnu · glibcMar 25, 2003

    • CVE-1999-0041
      33Monitor

      Buffer overflow in NLS (Natural Language Service).

      HighCVSS 7.5Proof of conceptEPSS 9%

      gnu · libcFeb 13, 1997

    • CVE-2006-0177
      28Monitor

      Multiple buffer overflows in Cray UNICOS 9.0.2.2 might allow local users to gain privileges by (1) invoking /usr/bin/script with a long comm

      HighCVSS 7.2Proof of conceptEPSS 1%

      cray · unicosJan 11, 2006

    • CVE-2001-0891
      28Monitor

      Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gain root privileg

      HighCVSS 7.2No exploitEPSS 0%

      sgi · nqsdaemonJan 31, 2002

    • CVE-2006-0178
      28Monitor

      Format string vulnerability in /bin/ftp in UNICOS 9.0.2.2 allows local users to have an unknown impact via format string specifiers in the q

      HighCVSS 7.2No exploitEPSS 0%

      cray · unicosJan 11, 2006

    • CVE-2014-0748
      28Monitor

      apinit on Cray devices with CLE before 4.2.UP02 and 5.x before 5.1.UP00 does not use alpsauth data to validate the UID in a launch message,

      HighCVSS 7.2No exploitEPSS 0%

      cray · cray linux environmentDec 26, 2014

    • CVE-1999-1468
      24Monitor

      rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Interna

      MediumCVSS 6.2No exploitEPSS 0%

      next · nextOct 22, 1991

    • CVE-1999-1300
      14Monitor

      Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounting configuration.

      LowCVSS 3.6No exploitEPSS 0%

      cray · unicosDec 31, 1999