CVE-2003-0697
- EPSS 0.36%
- Veröffentlicht 06.10.2003 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:02:40
Format string vulnerability in lpd in the bos.rte.printers fileset for AIX 4.3 through 5.2, with debug enabled, allows local users to cause a denial of service (crash) or gain root privileges.
- EPSS 2.1%
- Veröffentlicht 06.10.2003 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:02:49
Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root privileges via login, and local users to gain privileges via login, su, or passwd, with a username that contains format string specifi...
- EPSS 5.03%
- Veröffentlicht 16.06.2003 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:01:54
IBM AIX 5.2 and earlier distributes Sendmail with a configuration file (sendmail.cf) with the (1) promiscuous_relay, (2) accept_unresolvable_domains, and (3) accept_unqualified_senders features enabled, which allows Sendmail to be used as an open mai...
- EPSS 4.12%
- Veröffentlicht 22.04.2003 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:59:23
Buffer overflow in errpt in AIX 4.3.3 allows local users to execute arbitrary code as root.
CVE-2002-1548
- EPSS 0.42%
- Veröffentlicht 31.03.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 21:59:32
Unknown vulnerability in autofs on AIX 4.3.0, when using executable maps, allows attackers to execute arbitrary commands as root, possibly related to "string handling around how the executable map is called."
CVE-2002-1550
- EPSS 0.31%
- Veröffentlicht 31.03.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 21:59:32
dump_smutil.sh in IBM AIX allows local users to overwrite arbitrary files via a symlink attack on temporary files.
CVE-2002-1551
- EPSS 0.41%
- Veröffentlicht 31.03.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 21:59:32
Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code.
CVE-2003-0028
- EPSS 15.03%
- Veröffentlicht 25.03.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:01:22
Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via ...
CVE-2003-0064
- EPSS 2.71%
- Veröffentlicht 03.03.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:01:26
The dtterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, wh...
CVE-2002-1622
- EPSS 3.03%
- Veröffentlicht 31.12.2002 05:00:00
- Zuletzt bearbeitet 16.06.2026 21:59:40
Buffer overflow in certain RPC routines in IBM AIX 4.3 may allow attackers to execute arbitrary code, related to a "variable data type."