Записи sco
129 опубликованных записей вендора sco.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 0,8 %
- Pre-auth RCE
- 6
- С записью об исправлении
- 9,3 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-399 Resource Management Errors2
- CWE-20 Improper Input Validation2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-476 NULL Pointer Dereference1
- CWE-1067 Excessive Execution of Sequential Searches of Data Resource1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
129 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
68На этой неделе | CVE-2001-0797Готовый эксплойт | Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large numbesgi · irix | Критическая10,0 | — | 94,7 % | 12 дек. 2001 г. |
52В плане | CVE-1999-0368Proof of concept | Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a.proftpd project · proftpd | Критическая10,0 | — | 39,8 % | 9 февр. 1999 г. |
49В плане | CVE-1999-0009Proof of concept | Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.data general · dg ux | Критическая10,0 | — | 29,0 % | 8 апр. 1998 г. |
42В плане | CVE-1999-0128Proof of concept | Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.digital · osf 1 | Средняя5,0 | — | 74,5 % | 18 дек. 1996 г. |
41В плане | CVE-2000-0026Proof of concept | Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string.windowmaker · wmmon | Критическая10,0 | — | 4,6 % | 21 дек. 1999 г. |
41В плане | CVE-2005-3625Эксплойта нет | Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial libextractor · libextractor · CWE-399 | Критическая10,0 | — | 3,8 % | 31 дек. 2005 г. |
41В плане | CVE-2000-0306Proof of concept | Buffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long message.sco · openserver | Критическая10,0 | — | 3,7 % | 12 мар. 2001 г. |
41В плане | CVE-1999-0836Proof of concept | UnixWare uidadmin allows local users to modify arbitrary files via a symlink attack.sco · unixware | Критическая10,0 | — | 3,1 % | 2 дек. 1998 г. |
41В плане | CVE-2000-0308Эксплойта нет | Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allnetscape · enterprise server | Критическая10,0 | — | 2,2 % | 12 мар. 2001 г. |
40В плане | CVE-2003-0791Эксплойта нет | The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the stringmozilla · mozilla · CWE-502 | Критическая9,8 | — | 2,1 % | 7 окт. 2003 г. |
40В плане | CVE-1999-0798Эксплойта нет | Buffer overflow in bootpd on OpenBSD, FreeBSD, and Linux systems via a malformed header type.freebsd · freebsd | Критическая10,0 | — | 1,6 % | 4 дек. 1998 г. |
40В плане | CVE-1999-1138Эксплойта нет | SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for thesco · open desktop | Критическая10,0 | — | 1,6 % | 17 сент. 1993 г. |
40В плане | CVE-2000-0348Эксплойта нет | A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain roosco · unixware | Критическая10,0 | — | 1,5 % | 12 мар. 2001 г. |
40В плане | CVE-1999-0835Эксплойта нет | Denial of service in BIND named via malformed SIG records.ibm · aix | Критическая10,0 | — | 1,5 % | 10 нояб. 1999 г. |
40В плане | CVE-2000-0003Эксплойта нет | Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.sco · unixware | Критическая10,0 | — | 1,4 % | 30 дек. 1999 г. |
33Наблюдать | CVE-2000-1014Proof of concept | Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrasco · unixware | Высокая7,5 | — | 11,5 % | 11 дек. 2000 г. |
33Наблюдать | CVE-2004-0079Эксплойта нет | The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (openssl · openssl · CWE-476 | Высокая7,5 | — | 9,5 % | 23 нояб. 2004 г. |
32Наблюдать | CVE-2004-1082Эксплойта нет | mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remotapache · http server | Высокая7,5 | — | 7,6 % | 3 февр. 2004 г. |
32Наблюдать | CVE-2004-1307Эксплойта нет | Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code vilibtiff · libtiff | Высокая7,5 | — | 6,3 % | 21 дек. 2004 г. |
31Наблюдать | CVE-2006-0072Proof of concept | Buffer overflow in termsh on SCO OpenServer 5.0.7 allows remote attackers to execute arbitrary code via a long -o command line argument.sco · openserver | Высокая7,5 | — | 4,9 % | 3 янв. 2006 г. |
31Наблюдать | CVE-2004-0390Proof of concept | SCO OpenServer 5.0.5 through 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote attacsco · openserver | Высокая7,5 | — | 2,6 % | 31 дек. 2004 г. |
31Наблюдать | CVE-2002-1998Эксплойта нет | Buffer overflow in rpc.cmsd in SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows remote attackers to execute arbitrary commands via a long paramsco · open unix | Высокая7,5 | — | 2,5 % | 31 дек. 2002 г. |
31Наблюдать | CVE-2001-0579Proof of concept | lpadmin in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first argument sco · openserver | Высокая7,5 | — | 2,4 % | 22 авг. 2001 г. |
31Наблюдать | CVE-1999-0017Эксплойта нет | FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.gnu · inet | Высокая7,5 | — | 2,0 % | 10 дек. 1997 г. |
31Наблюдать | CVE-2000-0158Эксплойта нет | Buffer overflow in MMDF server allows remote attackers to gain privileges via a long MAIL FROM command to the SMTP daemon.sco · openserver | Высокая7,5 | — | 1,8 % | 16 февр. 2000 г. |
- CVE-2001-079768На этой неделе
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large numbe
КритическаяCVSS 10,0Готовый эксплойтEPSS 95 %sgi · irix12 дек. 2001 г.
- CVE-1999-036852В плане
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a.
КритическаяCVSS 10,0Proof of conceptEPSS 40 %proftpd project · proftpd9 февр. 1999 г.
- CVE-1999-000949В плане
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
КритическаяCVSS 10,0Proof of conceptEPSS 29 %data general · dg ux8 апр. 1998 г.
- CVE-1999-012842В плане
Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
СредняяCVSS 5,0Proof of conceptEPSS 75 %digital · osf 118 дек. 1996 г.
- CVE-2000-002641В плане
Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string.
КритическаяCVSS 10,0Proof of conceptEPSS 5 %windowmaker · wmmon21 дек. 1999 г.
- CVE-2005-362541В плане
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %libextractor · libextractor31 дек. 2005 г.
- CVE-2000-030641В плане
Buffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long message.
КритическаяCVSS 10,0Proof of conceptEPSS 4 %sco · openserver12 мар. 2001 г.
- CVE-1999-083641В плане
UnixWare uidadmin allows local users to modify arbitrary files via a symlink attack.
КритическаяCVSS 10,0Proof of conceptEPSS 3 %sco · unixware2 дек. 1998 г.
- CVE-2000-030841В плане
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 all
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %netscape · enterprise server12 мар. 2001 г.
- CVE-2003-079140В плане
The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the string
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %mozilla · mozilla7 окт. 2003 г.
- CVE-1999-079840В плане
Buffer overflow in bootpd on OpenBSD, FreeBSD, and Linux systems via a malformed header type.
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %freebsd · freebsd4 дек. 1998 г.
- CVE-1999-113840В плане
SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %sco · open desktop17 сент. 1993 г.
- CVE-2000-034840В плане
A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain roo
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %sco · unixware12 мар. 2001 г.
- CVE-1999-083540В плане
Denial of service in BIND named via malformed SIG records.
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %ibm · aix10 нояб. 1999 г.
- CVE-2000-000340В плане
Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %sco · unixware30 дек. 1999 г.
- CVE-2000-101433Наблюдать
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitra
ВысокаяCVSS 7,5Proof of conceptEPSS 12 %sco · unixware11 дек. 2000 г.
- CVE-2004-007933Наблюдать
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (
ВысокаяCVSS 7,5Эксплойта нетEPSS 10 %openssl · openssl23 нояб. 2004 г.
- CVE-2004-108232Наблюдать
mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remot
ВысокаяCVSS 7,5Эксплойта нетEPSS 8 %apache · http server3 февр. 2004 г.
- CVE-2004-130732Наблюдать
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code vi
ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %libtiff · libtiff21 дек. 2004 г.
- CVE-2006-007231Наблюдать
Buffer overflow in termsh on SCO OpenServer 5.0.7 allows remote attackers to execute arbitrary code via a long -o command line argument.
ВысокаяCVSS 7,5Proof of conceptEPSS 5 %sco · openserver3 янв. 2006 г.
- CVE-2004-039031Наблюдать
SCO OpenServer 5.0.5 through 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote attac
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %sco · openserver31 дек. 2004 г.
- CVE-2002-199831Наблюдать
Buffer overflow in rpc.cmsd in SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows remote attackers to execute arbitrary commands via a long param
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %sco · open unix31 дек. 2002 г.
- CVE-2001-057931Наблюдать
lpadmin in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first argument
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %sco · openserver22 авг. 2001 г.
- CVE-1999-001731Наблюдать
FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %gnu · inet10 дек. 1997 г.
- CVE-2000-015831Наблюдать
Buffer overflow in MMDF server allows remote attackers to gain privileges via a long MAIL FROM command to the SMTP daemon.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %sco · openserver16 февр. 2000 г.