VYPR

Aix

by IBM

CVEs (554)

  • CVE-2007-4228Aug 8, 2007
    risk 0.00cvss —epss 0.00

    rmpvc on IBM AIX 4.3 allows local users to cause a denial of service (system crash) via long port logical name (-l) argument.

  • CVE-2007-3680Jul 11, 2007
    risk 0.00cvss —epss 0.00

    Stack-based buffer overflow in the odm_searchpath function in libodm in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long ODMPATH environment variable.

  • CVE-2007-2996Jun 4, 2007
    risk 0.00cvss —epss 0.00

    Unspecified vulnerability in perl.rte 5.8.0.10 through 5.8.0.95 on IBM AIX 5.2, and 5.8.2.10 through 5.8.2.50 on AIX 5.3, allows local users to gain privileges via unspecified vectors related to the installation and "waiting for a legitimate user to execute a binary that ships…

  • CVE-2007-2995Jun 4, 2007
    risk 0.00cvss —epss 0.01

    Unspecified vulnerability in sysmgt.websm.rte in IBM AIX 5.2.0 and 5.3.0 has unknown impact and attack vectors.

  • CVE-2007-1798Apr 2, 2007
    risk 0.00cvss —epss 0.00

    Buffer overflow in the drmgr command in IBM AIX 5.2 and 5.3 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long path name.

  • CVE-2007-0978Feb 16, 2007
    risk 0.00cvss —epss 0.00

    Buffer overflow in swcons in IBM AIX 5.3 allows local users to gain privileges via long input data.

  • CVE-2007-0670Feb 3, 2007
    risk 0.00cvss —epss 0.00

    Buffer overflow in bos.rte.libc in IBM AIX 5.2 and 5.3 allows local users to execute arbitrary code via the "r-commands", possibly including (1) rdist, (2) rsh, (3) rcp, (4) rsync, and (5) rlogin.

  • CVE-2007-0618Jan 31, 2007
    risk 0.00cvss —epss 0.02

    Unspecified vulnerability in (1) pop3d, (2) pop3ds, (3) imapd, and (4) imapds in IBM AIX 5.3.0 has unspecified impact and attack vectors, involving an "authentication vulnerability."

  • CVE-2007-0392Jan 19, 2007
    risk 0.00cvss —epss 0.00

    IBM AIX 5.3 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.

  • CVE-2006-6915Dec 31, 2006
    risk 0.00cvss —epss 0.01

    ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote authenticated users to cause a denial of service (port exhaustion) via unspecified vectors. NOTE: some details were obtained from third party sources.

  • CVE-2006-6914Dec 31, 2006
    risk 0.00cvss —epss 0.02

    Unspecified vulnerability in ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote attackers to obtain sensitive information, including passwords, via unspecified vectors.

  • CVE-2006-5011Sep 27, 2006
    risk 0.00cvss —epss 0.00

    Untrusted search path vulnerability in snappd in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via a Trojan horse program, involving the "system subroutine".

  • CVE-2006-5010Sep 27, 2006
    risk 0.00cvss —epss 0.00

    Untrusted search path vulnerability in acctctl in IBM AIX 5.3.0 allows local users to execute arbitrary commands by modifying the path to point to a malicious mkdir program.

  • CVE-2006-5004Sep 27, 2006
    risk 0.00cvss —epss 0.00

    Unspecified vulnerability in the rdist command in IBM AIX 5.2.0 and 5.3.0 allows local users to overwrite arbitrary files via unspecified vectors.

  • CVE-2006-5007Sep 27, 2006
    risk 0.00cvss —epss 0.00

    Untrusted search path vulnerability in uucp in IBM AIX 5.2.0 and 5.3.0 allows local users to local users to gain privileges via a Trojan horse program involving uux.

  • CVE-2006-5009Sep 27, 2006
    risk 0.00cvss —epss 0.00

    Unspecified vulnerability in xlock in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands and overwrite arbitrary files via unspecified vectors, possibly involving a buffer overflow.

  • CVE-2006-5008Sep 27, 2006
    risk 0.00cvss —epss 0.03

    Unspecified vulnerability in utape in IBM AIX 5.2.0 and 5.3.0 allows attackers to execute arbitrary commands and overwrite arbitrary files via unspecified vectors.

  • CVE-2006-5006Sep 27, 2006
    risk 0.00cvss —epss 0.00

    Buffer overflow in cfgmgr in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long directory path argument.

  • CVE-2006-5003Sep 27, 2006
    risk 0.00cvss —epss 0.00

    Unspecified vulnerability in the named8 command in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors.

  • CVE-2006-5005Sep 27, 2006
    risk 0.00cvss —epss 0.00

    Unspecified vulnerability in bos.net.tcp.client in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors involving /etc/slip.login.

Page 21 of 28