CVE-2007-0392
- EPSS 0.07%
- Published 19.01.2007 23:28:00
- Last modified 09.04.2025 00:30:58
IBM AIX 5.3 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.
- EPSS 0.52%
- Published 31.12.2006 05:00:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote attackers to obtain sensitive information, including passwords, via unspecified vectors.
- EPSS 0.87%
- Published 31.12.2006 05:00:00
- Last modified 09.04.2025 00:30:58
ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote authenticated users to cause a denial of service (port exhaustion) via unspecified vectors. NOTE: some details were obtained from third party sources.
CVE-2006-5003
- EPSS 0.04%
- Published 27.09.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in the named8 command in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors.
CVE-2006-5004
- EPSS 0.06%
- Published 27.09.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in the rdist command in IBM AIX 5.2.0 and 5.3.0 allows local users to overwrite arbitrary files via unspecified vectors.
CVE-2006-5005
- EPSS 0.04%
- Published 27.09.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in bos.net.tcp.client in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors involving /etc/slip.login.
CVE-2006-5006
- EPSS 0.07%
- Published 27.09.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in cfgmgr in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long directory path argument.
CVE-2006-5007
- EPSS 0.08%
- Published 27.09.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Untrusted search path vulnerability in uucp in IBM AIX 5.2.0 and 5.3.0 allows local users to local users to gain privileges via a Trojan horse program involving uux.
- EPSS 1.54%
- Published 27.09.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in utape in IBM AIX 5.2.0 and 5.3.0 allows attackers to execute arbitrary commands and overwrite arbitrary files via unspecified vectors.
CVE-2006-5009
- EPSS 0.05%
- Published 27.09.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in xlock in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands and overwrite arbitrary files via unspecified vectors, possibly involving a buffer overflow.