- EPSS 1.2%
- Veröffentlicht 06.10.2003 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root privileges via login, and local users to gain privileges via login, su, or passwd, with a username that contains format string specifi...
- EPSS 1.18%
- Veröffentlicht 16.06.2003 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
IBM AIX 5.2 and earlier distributes Sendmail with a configuration file (sendmail.cf) with the (1) promiscuous_relay, (2) accept_unresolvable_domains, and (3) accept_unqualified_senders features enabled, which allows Sendmail to be used as an open mai...
- EPSS 10.66%
- Veröffentlicht 22.04.2003 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in errpt in AIX 4.3.3 allows local users to execute arbitrary code as root.
CVE-2002-1548
- EPSS 0.06%
- Veröffentlicht 31.03.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unknown vulnerability in autofs on AIX 4.3.0, when using executable maps, allows attackers to execute arbitrary commands as root, possibly related to "string handling around how the executable map is called."
CVE-2002-1550
- EPSS 0.06%
- Veröffentlicht 31.03.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
dump_smutil.sh in IBM AIX allows local users to overwrite arbitrary files via a symlink attack on temporary files.
CVE-2002-1551
- EPSS 0.1%
- Veröffentlicht 31.03.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code.
CVE-2003-0028
- EPSS 56.05%
- Veröffentlicht 25.03.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via ...
CVE-2003-0064
- EPSS 0.87%
- Veröffentlicht 03.03.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The dtterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, wh...
CVE-2002-1622
- EPSS 1.75%
- Veröffentlicht 31.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in certain RPC routines in IBM AIX 4.3 may allow attackers to execute arbitrary code, related to a "variable data type."
- EPSS 0.51%
- Veröffentlicht 31.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in lscfg of unknown versions of AIX has unknown impact.