CVE-2007-1798
- EPSS 0.06%
- Veröffentlicht 02.04.2007 22:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the drmgr command in IBM AIX 5.2 and 5.3 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long path name.
CVE-2007-0978
- EPSS 0.06%
- Veröffentlicht 16.02.2007 01:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in swcons in IBM AIX 5.3 allows local users to gain privileges via long input data.
CVE-2007-0670
- EPSS 0.1%
- Veröffentlicht 03.02.2007 00:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in bos.rte.libc in IBM AIX 5.2 and 5.3 allows local users to execute arbitrary code via the "r-commands", possibly including (1) rdist, (2) rsh, (3) rcp, (4) rsync, and (5) rlogin.
CVE-2007-0618
- EPSS 1.02%
- Veröffentlicht 31.01.2007 11:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in (1) pop3d, (2) pop3ds, (3) imapd, and (4) imapds in IBM AIX 5.3.0 has unspecified impact and attack vectors, involving an "authentication vulnerability."
CVE-2007-0392
- EPSS 0.07%
- Veröffentlicht 19.01.2007 23:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
IBM AIX 5.3 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.
- EPSS 0.52%
- Veröffentlicht 31.12.2006 05:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote attackers to obtain sensitive information, including passwords, via unspecified vectors.
- EPSS 0.87%
- Veröffentlicht 31.12.2006 05:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote authenticated users to cause a denial of service (port exhaustion) via unspecified vectors. NOTE: some details were obtained from third party sources.
CVE-2006-5003
- EPSS 0.04%
- Veröffentlicht 27.09.2006 01:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the named8 command in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors.
CVE-2006-5004
- EPSS 0.06%
- Veröffentlicht 27.09.2006 01:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the rdist command in IBM AIX 5.2.0 and 5.3.0 allows local users to overwrite arbitrary files via unspecified vectors.
CVE-2006-5005
- EPSS 0.04%
- Veröffentlicht 27.09.2006 01:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in bos.net.tcp.client in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors involving /etc/slip.login.