CVE-2003-1588
- EPSS 0.06%
- Veröffentlicht 08.02.2010 20:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Sun Cluster 2.2, when HA-Oracle or HA-Sybase DBMS services are used, stores database credentials in cleartext in a cluster configuration file, which allows local users to obtain sensitive information by reading this file.
CVE-2009-3433
- EPSS 0.05%
- Veröffentlicht 28.09.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in clsetup in the configuration utility in Sun Solaris Cluster 3.2 allows local users to gain privileges via unknown vectors.
CVE-2008-2539
- EPSS 0.05%
- Veröffentlicht 03.06.2008 15:32:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Sun Cluster Global File System in Sun Cluster 3.1 on Sun Solaris 8 through 10, when an underlying ufs filesystem is used, might allow local users to read data from arbitrary deleted files, or corrupt files in global filesystems, via unspecified v...
CVE-2007-2267
- EPSS 1.34%
- Veröffentlicht 25.04.2007 20:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Sun Cluster 3.1 and Solaris Cluster 3.2 before 20070424 allows remote authenticated users, operating from a different cluster node, to cause a denial of service (data corruption or send_mondo panic) via unspecified vector...
CVE-2006-1601
- EPSS 0.07%
- Veröffentlicht 04.04.2006 10:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in SunPlex Manager in Sun Cluster 3.1 4/04 allows local users with solaris.cluster.gui authorization to view arbitrary files via unspecified vectors.
- EPSS 0.07%
- Veröffentlicht 31.12.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Sun Cluster 2.2 through 3.2 for Oracle Parallel Server / Real Application Clusters (OPS/RAC) allows local users to cause a denial of service (cluster node panic or abort) by launching a daemon listening on a TCP port that would otherwise be used by t...
- EPSS 1.01%
- Veröffentlicht 12.02.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The clustmon service in Sun Cluster 2.x does not require authentication, which allows remote attackers to obtain sensitive information such as system logs and cluster configurations.
CVE-2001-0078
- EPSS 0.1%
- Veröffentlicht 12.02.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
in.mond in Sun Cluster 2.x allows local users to read arbitrary files via a symlink attack on the status file of a host running HA-NFS.