CVE-2001-1414
- EPSS 0.72%
- Published 09.10.2001 04:00:00
- Last modified 03.04.2025 01:03:51
The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access, which allows remote attackers to hide their activities, possibly when certain BSM audit files are not present under the FTP root.
CVE-2001-0686
- EPSS 0.13%
- Published 20.09.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in mail included with SunOS 5.8 for x86 allows a local user to gain privileges via a long HOME environment variable.
CVE-2001-1066
- EPSS 0.09%
- Published 31.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
ns6install installation script for Netscape 6.01 on Solaris, and other versions including 6.2.1 beta, allows local users to overwrite arbitrary files via a symlink attack.
CVE-2001-0526
- EPSS 0.13%
- Published 14.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in the Xview library as used by mailtool in Solaris 8 and earlier allows a local attacker to gain privileges via the OPENWINHOME environment variable.
CVE-2001-0548
- EPSS 0.12%
- Published 14.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable.
- EPSS 16.67%
- Published 14.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
CVE-2001-0565
- EPSS 0.18%
- Published 14.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F' command line option.
CVE-2001-0594
- EPSS 0.14%
- Published 02.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
- EPSS 1.48%
- Published 21.07.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in the line printer daemon (in.lpd) for Solaris 8 and earlier allows local and remote attackers to gain root privileges via a "transfer job" routine.
CVE-2001-1076
- EPSS 0.21%
- Published 05.07.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.