Skip to content
Noroxi

immunix records

27 published records for vendor immunix.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
3.7%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    27 records
    • Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attacke

      CriticalCVSS 10.0Proof of conceptEPSS 16%

      caldera · openlinux ebuilderNov 14, 2000

    • Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.

      CriticalCVSS 9.8Proof of conceptEPSS 15%

      immunix · immunixMar 15, 2002

    • CVE-2002-1565
      31Monitor

      Buffer overflow in url_filename function for wget 1.8.1 allows attackers to cause a denial of service (segmentation fault) and possibly exec

      HighCVSS 7.5No exploitEPSS 3%

      immunix · immunixJun 16, 2003

    • CVE-2001-0473
      31Monitor

      Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.

      HighCVSS 7.5No exploitEPSS 2%

      mutt · muttJun 27, 2001

    • CVE-2000-1213
      31Monitor

      ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, does not drop privileges after

      HighCVSS 7.5No exploitEPSS 2%

      iputils · iputilsOct 18, 2000

    • CVE-2001-1030
      31Monitor

      Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_p

      HighCVSS 7.5No exploitEPSS 2%

      squid · squid web proxyJul 18, 2001

    • CVE-1999-1111
      31Monitor

      Vulnerability in StackGuard before 1.21 allows remote attackers to bypass the Random and Terminator Canary security mechanisms by using a no

      HighCVSS 7.5No exploitEPSS 2%

      immunix · stackguardNov 9, 1999

    • CVE-2000-1134
      28Monitor

      Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redir

      HighCVSS 7.2Proof of conceptEPSS 1%

      immunix · immunixJan 9, 2001

    • CVE-2000-1095
      28Monitor

      modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters.

      HighCVSS 7.2Proof of conceptEPSS 1%

      immunix · immunixJan 9, 2001

    • CVE-2000-0963
      28Monitor

      Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMI

      HighCVSS 7.2No exploitEPSS 1%

      immunix · immunixDec 19, 2000

    • CVE-2000-1208
      28Monitor

      Format string vulnerability in startprinting() function of printjob.c in BSD-based lpr lpd package may allow local users to gain privileges

      HighCVSS 7.2No exploitEPSS 0%

      immunix · immunixAug 12, 2002

    • CVE-2001-0738
      21Monitor

      LogLine function in klogd in sysklogd 1.3 in various Linux distributions allows an attacker to cause a denial of service (hang) by causing n

      MediumCVSS 5.0No exploitEPSS 3%

      immunix · immunixOct 18, 2001

    • CVE-2001-0641
      18Monitor

      Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S opti

      MediumCVSS 4.6Proof of conceptEPSS 1%

      immunix · immunixSep 20, 2001

    • CVE-2000-1214
      18Monitor

      Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J

      MediumCVSS 4.6No exploitEPSS 0%

      iputils · iputilsOct 18, 2000

    • glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing se

      LowCVSS 2.1Proof of conceptEPSS 1%

      immunix · immunixMar 26, 2001

    • Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary fil

      LowCVSS 2.1Proof of conceptEPSS 1%

      immunix · immunixOct 18, 2001

    • sgml-tools (aka sgmltools) before 1.0.9-15 creates temporary files with insecure permissions, which allows other users to read files that ar

      LowCVSS 2.1No exploitEPSS 0%

      debian · sgml-toolsJun 27, 2001

    • sdiff 2.7 in the diffutils package allows local users to overwrite files via a symlink attack.

      LowCVSS 1.2No exploitEPSS 0%

      immunix · immunixMar 12, 2001

    • vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.

      LowCVSS 1.2No exploitEPSS 0%

      immunix · immunixMar 12, 2001

    • inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

      LowCVSS 1.2No exploitEPSS 0%

      caldera · openlinux desktopMar 12, 2001

    • squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.

      LowCVSS 1.2No exploitEPSS 0%

      immunix · immunixMar 12, 2001

    • gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack.

      LowCVSS 1.2No exploitEPSS 0%

      immunix · immunixMar 12, 2001

    • arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

      LowCVSS 1.2No exploitEPSS 0%

      immunix · immunixMar 12, 2001

    • privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack.

      LowCVSS 1.2No exploitEPSS 0%

      immunix · immunixMar 12, 2001

    • useradd program in shadow-utils program may allow local users to overwrite arbitrary files via a symlink attack.

      LowCVSS 1.2No exploitEPSS 0%

      immunix · immunixMar 12, 2001