sgi records
259 published records for vendor sgi.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 4 · 1.5%
- Pre-auth RCE
- 40
- With a fix record
- 26.6%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer5
- CWE-264 Permissions, Privileges, and Access Controls4
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-125 Out-of-bounds Read3
- CWE-399 Resource Management Errors3
- CWE-189 Numeric Errors2
The weakness classes this vendor ships most often: where to look.
CWEAll records
259 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
68This week | CVE-2001-0797Weaponized | Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large numbesgi · irix | Critical10.0 | — | 94.7% | Dec 12, 2001 |
60This week | CVE-2003-0694Weaponized | The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated usingsendmail · advanced message server | Critical10.0 | — | 66.2% | Oct 6, 2003 |
56Plan | CVE-2001-0800Weaponized | lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.sgi · irix | Critical10.0 | — | 54.1% | Dec 6, 2001 |
56Plan | CVE-2002-1318Weaponized | Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via ansamba · samba | Critical10.0 | — | 51.9% | Dec 11, 2002 |
52Plan | CVE-2001-0554Proof of concept | Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a mit · kerberos · CWE-120 | Critical10.0 | — | 38.7% | Aug 14, 2001 |
50Plan | CVE-2004-0492No exploit | Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (prapache · http server | Critical10.0 | — | 33.6% | Aug 6, 2004 |
49Plan | CVE-1999-0009Proof of concept | Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.data general · dg ux | Critical10.0 | — | 29.0% | Apr 8, 1998 |
47Plan | CVE-1999-0003Proof of concept | Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).tritreal · ted cde | Critical10.0 | — | 24.6% | Apr 1, 1998 |
46Plan | CVE-2010-1039Proof of concept | Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCpibm · aix · CWE-134 | Critical10.0 | — | 20.2% | May 20, 2010 |
46Plan | CVE-2001-0247Proof of concept | Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} semit · kerberos 5 | Critical10.0 | — | 19.3% | Jun 18, 2001 |
45Plan | CVE-2001-0249No exploit | Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the Lhp · hp-ux · CWE-131 | Critical9.8 | — | 19.7% | Jun 18, 2001 |
45Plan | CVE-2000-1221Proof of concept | The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostnamsgi · irix | Critical10.0 | — | 16.7% | Jan 8, 2000 |
45Plan | CVE-2000-0844Proof of concept | Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackecaldera · openlinux ebuilder · CWE-264 | Critical10.0 | — | 15.6% | Nov 14, 2000 |
44Plan | CVE-2000-1220Proof of concept | The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing ssgi · irix | Critical10.0 | — | 14.2% | Jan 8, 2000 |
44Plan | CVE-2004-0416Proof of concept | Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackercvs · cvs · CWE-119 | Critical10.0 | — | 13.2% | Aug 6, 2004 |
44Plan | CVE-1999-0208Proof of concept | rpc.ypupdated (NIS) allows remote users to execute arbitrary commands.sgi · irix | Critical10.0 | — | 12.9% | Dec 12, 1995 |
44Plan | CVE-2000-0733Proof of concept | Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to executsgi · irix | Critical10.0 | — | 12.4% | Oct 20, 2000 |
44Plan | CVE-2000-0245Proof of concept | Vulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts.sgi · irix | Critical10.0 | — | 11.7% | Mar 27, 2000 |
43Plan | CVE-2004-0523No exploit | Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrarymit · kerberos | Critical10.0 | — | 11.7% | Aug 18, 2004 |
43Plan | CVE-1999-0018Proof of concept | Buffer overflow in statd allows root privileges.sgi · irix | Critical10.0 | — | 10.5% | Dec 5, 1997 |
43Plan | CVE-2004-0234No exploit | Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewaclearswift · mailsweeper · CWE-119 | Critical10.0 | — | 10.3% | Aug 18, 2004 |
42Plan | CVE-2001-0248No exploit | Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the Shp · hp-ux · CWE-131 | Critical9.8 | — | 11.2% | Jun 18, 2001 |
42Plan | CVE-2004-0507No exploit | Buffer overflow in the MMSE dissector for Ethereal 0.10.1 to 0.10.3 allows remote attackers to cause a denial of service and possibly executethereal group · ethereal | Critical10.0 | — | 7.6% | Aug 18, 2004 |
42Plan | CVE-2004-0418No exploit | serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote attcvs · cvs | Critical10.0 | — | 5.7% | Aug 6, 2004 |
42Plan | CVE-2002-1584No exploit | Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and possibly other platfsgi · irix | Critical10.0 | — | 5.7% | Dec 27, 2002 |
- CVE-2001-079768This week
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large numbe
CriticalCVSS 10.0WeaponizedEPSS 95%sgi · irixDec 12, 2001
- CVE-2003-069460This week
The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using
CriticalCVSS 10.0WeaponizedEPSS 66%sendmail · advanced message serverOct 6, 2003
- CVE-2001-080056Plan
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
CriticalCVSS 10.0WeaponizedEPSS 54%sgi · irixDec 6, 2001
- CVE-2002-131856Plan
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an
CriticalCVSS 10.0WeaponizedEPSS 52%samba · sambaDec 11, 2002
- CVE-2001-055452Plan
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a
CriticalCVSS 10.0Proof of conceptEPSS 39%mit · kerberosAug 14, 2001
- CVE-2004-049250Plan
Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (pr
CriticalCVSS 10.0No exploitEPSS 34%apache · http serverAug 6, 2004
- CVE-1999-000949Plan
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
CriticalCVSS 10.0Proof of conceptEPSS 29%data general · dg uxApr 8, 1998
- CVE-1999-000347Plan
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
CriticalCVSS 10.0Proof of conceptEPSS 25%tritreal · ted cdeApr 1, 1998
- CVE-2010-103946Plan
Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCp
CriticalCVSS 10.0Proof of conceptEPSS 20%ibm · aixMay 20, 2010
- CVE-2001-024746Plan
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} se
CriticalCVSS 10.0Proof of conceptEPSS 19%mit · kerberos 5Jun 18, 2001
- CVE-2001-024945Plan
Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the L
CriticalCVSS 9.8No exploitEPSS 20%hp · hp-uxJun 18, 2001
- CVE-2000-122145Plan
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostnam
CriticalCVSS 10.0Proof of conceptEPSS 17%sgi · irixJan 8, 2000
- CVE-2000-084445Plan
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attacke
CriticalCVSS 10.0Proof of conceptEPSS 16%caldera · openlinux ebuilderNov 14, 2000
- CVE-2000-122044Plan
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing s
CriticalCVSS 10.0Proof of conceptEPSS 14%sgi · irixJan 8, 2000
- CVE-2004-041644Plan
Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attacker
CriticalCVSS 10.0Proof of conceptEPSS 13%cvs · cvsAug 6, 2004
- CVE-1999-020844Plan
rpc.ypupdated (NIS) allows remote users to execute arbitrary commands.
CriticalCVSS 10.0Proof of conceptEPSS 13%sgi · irixDec 12, 1995
- CVE-2000-073344Plan
Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execut
CriticalCVSS 10.0Proof of conceptEPSS 12%sgi · irixOct 20, 2000
- CVE-2000-024544Plan
Vulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts.
CriticalCVSS 10.0Proof of conceptEPSS 12%sgi · irixMar 27, 2000
- CVE-2004-052343Plan
Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary
CriticalCVSS 10.0No exploitEPSS 12%mit · kerberosAug 18, 2004
- CVE-1999-001843Plan
Buffer overflow in statd allows root privileges.
CriticalCVSS 10.0Proof of conceptEPSS 10%sgi · irixDec 5, 1997
- CVE-2004-023443Plan
Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewa
CriticalCVSS 10.0No exploitEPSS 10%clearswift · mailsweeperAug 18, 2004
- CVE-2001-024842Plan
Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the S
CriticalCVSS 9.8No exploitEPSS 11%hp · hp-uxJun 18, 2001
- CVE-2004-050742Plan
Buffer overflow in the MMSE dissector for Ethereal 0.10.1 to 0.10.3 allows remote attackers to cause a denial of service and possibly execut
CriticalCVSS 10.0No exploitEPSS 8%ethereal group · etherealAug 18, 2004
- CVE-2004-041842Plan
serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote att
CriticalCVSS 10.0No exploitEPSS 6%cvs · cvsAug 6, 2004
- CVE-2002-158442Plan
Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and possibly other platf
CriticalCVSS 10.0No exploitEPSS 6%sgi · irixDec 27, 2002