VYPR

Aix

by IBM

CVEs (409)

  • CVE-1999-0017Dec 10, 1997
    risk 0.00cvss epss 0.02

    FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.

  • CVE-1999-0093Oct 29, 1997
    risk 0.00cvss epss 0.00

    AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.

  • CVE-1999-0097Oct 29, 1997
    risk 0.00cvss epss 0.04

    The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).

  • CVE-1999-0094Oct 29, 1997
    risk 0.00cvss epss 0.00

    AIX piodmgrsu command allows local users to gain additional group privileges.

  • CVE-1999-0091Oct 28, 1997
    risk 0.00cvss epss 0.00

    Buffer overflow in AIX writesrv command allows local users to obtain root access.

  • CVE-1999-0089Oct 28, 1997
    risk 0.00cvss epss 0.00

    Buffer overflow in AIX libDtSvc library can allow local users to gain root access.

  • CVE-1999-0072Oct 22, 1997
    risk 0.00cvss epss 0.00

    Buffer overflow in AIX xdat gives root access to local users.

  • CVE-1999-0090Oct 1, 1997
    risk 0.00cvss epss 0.00

    Buffer overflow in AIX rcp command allows local users to obtain root access.

  • CVE-1999-0024Aug 13, 1997
    risk 0.00cvss epss 0.05

    DNS cache poisoning via BIND, by predictable query IDs.

  • CVE-1999-0566Aug 1, 1997
    risk 0.00cvss epss 0.01

    An attacker can write to syslog files from any location, causing a denial of service by filling up the logs, and hiding activities.

  • CVE-1999-0628Jul 1, 1997
    risk 0.00cvss epss 0.01

    The rwho/rwhod service is running, which exposes machine status and user information.

  • CVE-1999-0111Jul 1, 1997
    risk 0.00cvss epss 0.01

    RIP v1 is susceptible to spoofing.

  • CVE-1999-0033Jun 12, 1997
    risk 0.00cvss epss 0.01

    Command execution in Sun systems via buffer overflow in the at program.

  • CVE-1999-0318Mar 1, 1997
    risk 0.00cvss epss 0.01

    Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.

  • CVE-1999-0048Jan 27, 1997
    risk 0.00cvss epss 0.03

    Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.

  • CVE-1999-0345Jan 1, 1997
    risk 0.00cvss epss 0.01

    Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.

  • CVE-1999-0129Dec 3, 1996
    risk 0.00cvss epss 0.01

    Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.

  • CVE-1999-0131Sep 11, 1996
    risk 0.00cvss epss 0.01

    Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.

  • CVE-1999-0085Aug 21, 1996
    risk 0.00cvss epss 0.04

    Buffer overflow in rwhod on AIX and other operating systems allows remote attackers to execute arbitrary code via a UDP packet with a long hostname.

  • CVE-1999-0138Jun 26, 1996
    risk 0.00cvss epss 0.01

    The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access.

Page 20 of 21