SunCVEs & Vulnerabilities

1,711 CVEs affecting Sun products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.

1,711 CVEs→ All vendors

Most Affected Products

jre 6,495opensolaris 5,914sdk 4,078jdk 3,312sunos 1,461solaris 1,104java system identity manager 68j2se 55
CVE-1999-0188HIGH

The passwd command in Solaris can be subjected to a denial of service.

17 Dec 1998
7.2
CVSS
CVE-1999-0139HIGH

Buffer overflow in Solaris x86 mkcookie allows local users to obtain root access.

12 Dec 1998
7.2
CVSS
CVE-1999-0321HIGHpoc

Buffer overflow in Solaris kcms_configure command allows local users to gain root access.

1 Dec 1998
7.2
CVSS
CVE-1999-0057HIGH

Vacation program allows command execution by remote users through a sendmail command.

16 Nov 1998
7.5
CVSS
CVE-1999-1025MEDIUM

CDE screen lock program (screenlock) on Solaris 2.6 does not properly lock an unprivileged user's console session when the host is an NIS+ client, which allows others with physical access to login with any string.

12 Nov 1998
4.6
CVSS
CVE-1999-0254CRITICAL

A hidden SNMP community string in HP OpenView allows remote attackers to modify MIB tables and obtain sensitive information.

2 Nov 1998
10.0
CVSS
CVE-1999-0186CRITICAL

In Solaris, an SNMP subagent has a default community string that allows remote attackers to execute arbitrary commands as root, or modify system parameters.

1 Oct 1998
10.0
CVSS
CVE-1999-0056HIGH

Buffer overflow in Sun's ping program can give root access to local users.

9 Sep 1998
7.2
CVSS
CVE-1999-0302HIGH

SunOS/Solaris FTP clients can be forced to execute arbitrary commands from a malicious FTP server.

1 Sep 1998
7.5
CVSS
CVE-1999-0065HIGH

Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands.

31 Aug 1998
7.5
CVSS
CVE-1999-0339HIGH

Buffer overflow in the libauth library in Solaris allows local users to gain additional privileges, possibly root access.

1 Aug 1998
7.2
CVSS
CVE-1999-0263MEDIUM

Solaris SUNWadmap can be exploited to obtain root access.

16 Jul 1998
4.6
CVSS
CVE-1999-1432HIGHpoc

Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspend has completed, which allows an attacker with physical access to input characters to the last active application from the keyboard for a short period after the system is restoring, which could lead to increased privileges.

16 Jul 1998
7.5
CVSS
CVE-1999-0213CRITICAL

libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind.

15 Jul 1998
10.0
CVSS
CVE-1999-1297LOW

cmdtool in OpenWindows 3.0 and XView 3.0 in SunOS 4.1.4 and earlier allows attackers with physical access to the system to display unechoed characters (such as those from password prompts) via the L2/AGAIN key.

15 Jul 1998
2.1
CVSS
CVE-1999-0797LOW

NIS finger allows an attacker to conduct a denial of service via a large number of finger requests, resulting in a large number of NIS queries.

29 Jun 1998
2.6
CVSS
CVE-1999-0054MEDIUM

Sun's ftpd daemon can be subjected to a denial of service.

10 Jun 1998
5.0
CVSS
CVE-1999-0008CRITICAL

Buffer overflow in NIS+, in Sun's rpc.nisd program.

8 Jun 1998
10.0
CVSS
CVE-1999-0303MEDIUM

Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames.

21 May 1998
4.6
CVSS
CVE-1999-0055HIGH

Buffer overflows in Sun libnsl allow root access.

14 May 1998
7.2
CVSS
CVE-1999-1027HIGH

Solaris 2.6 HW3/98 installs admintool with world-writable permissions, which allows local users to gain privileges by replacing it with a Trojan horse program.

7 May 1998
7.2
CVSS
CVE-1999-0212HIGH

Solaris rpc.mountd generates error messages that allow a remote attacker to determine what files are on the server.

29 Apr 1998
7.8
CVSS
CVE-1999-0069HIGHpoc

Solaris ufsrestore buffer overflow.

29 Apr 1998
8.4
CVSS
CVE-1999-0010MEDIUM

Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.

8 Apr 1998
5.0
CVSS
CVE-1999-0011MEDIUM

Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.

8 Apr 1998
5.4
CVSS
CVE-1999-0190HIGH

Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access.

8 Apr 1998
7.2
CVSS
CVE-1999-0009CRITICALpoc

Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.

8 Apr 1998
10.0
CVSS
CVE-1999-0003CRITICALpoc

Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).

1 Apr 1998
10.0
CVSS
CVE-1999-1118LOW

ndd in Solaris 2.6 allows local users to cause a denial of service by modifying certain TCP/IP parameters.

11 Mar 1998
2.1
CVSS
CVE-1999-0320CRITICAL

SunOS rpc.cmsd allows attackers to obtain root access by overwriting arbitrary files.

1 Mar 1998
9.3
CVSS
CVE-1999-0795HIGH

The NIS+ rpc.nisd server allows remote attackers to execute certain RPC calls without authentication to obtain system information, disable logging, or modify caches.

1 Mar 1998
7.5
CVSS
CVE-1999-0502HIGHpoc

A Unix account has a default, null, blank, or missing password.

1 Mar 1998
7.5
CVSS
CVE-1999-0296HIGH

Solaris volrmmount program allows attackers to read any file.

1 Feb 1998
7.2
CVSS
CVE-1999-0125MEDIUMpoc

Buffer overflow in SGI IRIX mailx program.

25 Jan 1998
4.6
CVSS
CVE-1999-0513MEDIUMpoc

ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.

5 Jan 1998
5.0
CVSS
CVE-1999-0273MEDIUM

Denial of service through Solaris 2.5.1 telnet by sending ^D characters.

1 Jan 1998
5.0
CVSS
CVE-1999-0104MEDIUM

A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.

16 Dec 1997
5.0
CVSS
CVE-1999-0015MEDIUMpoc

Teardrop IP denial of service.

16 Dec 1997
5.0
CVSS
CVE-1999-0017HIGH

FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.

10 Dec 1997
7.5
CVSS
CVE-1999-0018CRITICALpoc

Buffer overflow in statd allows root privileges.

5 Dec 1997
10.0
CVSS
CVE-1999-0016MEDIUMpoc

Land IP denial of service.

1 Dec 1997
5.0
CVSS
CVE-1999-0210CRITICALpoc

Automount daemon automountd allows local or remote users to gain privileges via shell metacharacters.

26 Nov 1997
10.0
CVSS
CVE-1999-1424MEDIUM

Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries.

10 Nov 1997
6.2
CVSS
CVE-1999-1425MEDIUM

Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.

10 Nov 1997
6.2
CVSS
CVE-1999-1426MEDIUM

Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files.

10 Nov 1997
6.2
CVSS
CVE-1999-1427MEDIUM

Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges.

10 Nov 1997
6.2
CVSS
CVE-1999-1428MEDIUM

Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Database Manager, which is running with setgid bin privileges.

10 Nov 1997
6.2
CVSS
CVE-1999-0097CRITICAL

The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).

29 Oct 1997
10.0
CVSS
← PrevPage 34 / 36Next →