VYPR

Aix

by IBM

CVEs (554)

  • CVE-1999-1075Mar 18, 1998
    risk 0.00cvss —epss 0.01

    inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1,…

  • CVE-1999-1486Feb 25, 1998
    risk 0.00cvss —epss 0.00

    sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to overwrite arbitrary files via a symlink attack.

  • CVE-1999-0087Feb 1, 1998
    risk 0.00cvss —epss 0.01

    Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.

  • CVE-1999-1487Jan 21, 1998
    risk 0.00cvss —epss 0.00

    Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.

  • CVE-1999-0086Jan 8, 1998
    risk 0.00cvss —epss 0.02

    AIX routed allows remote users to modify sensitive files.

  • CVE-1999-0017Dec 10, 1997
    risk 0.00cvss —epss 0.02

    FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.

  • CVE-1999-0093Oct 29, 1997
    risk 0.00cvss —epss 0.00

    AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.

  • CVE-1999-0094Oct 29, 1997
    risk 0.00cvss —epss 0.00

    AIX piodmgrsu command allows local users to gain additional group privileges.

  • CVE-1999-0097Oct 29, 1997
    risk 0.00cvss —epss 0.04

    The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).

  • CVE-1999-0091Oct 28, 1997
    risk 0.00cvss —epss 0.00

    Buffer overflow in AIX writesrv command allows local users to obtain root access.

  • CVE-1999-0089Oct 28, 1997
    risk 0.00cvss —epss 0.00

    Buffer overflow in AIX libDtSvc library can allow local users to gain root access.

  • CVE-1999-0072Oct 22, 1997
    risk 0.00cvss —epss 0.00

    Buffer overflow in AIX xdat gives root access to local users.

  • CVE-1999-0090Oct 1, 1997
    risk 0.00cvss —epss 0.00

    Buffer overflow in AIX rcp command allows local users to obtain root access.

  • CVE-1999-0024Aug 13, 1997
    risk 0.00cvss —epss 0.05

    DNS cache poisoning via BIND, by predictable query IDs.

  • CVE-1999-0566Aug 1, 1997
    risk 0.00cvss —epss 0.01

    An attacker can write to syslog files from any location, causing a denial of service by filling up the logs, and hiding activities.

  • CVE-1999-0628Jul 1, 1997
    risk 0.00cvss —epss 0.01

    The rwho/rwhod service is running, which exposes machine status and user information.

  • CVE-1999-0111Jul 1, 1997
    risk 0.00cvss —epss 0.01

    RIP v1 is susceptible to spoofing.

  • CVE-1999-0033Jun 12, 1997
    risk 0.00cvss —epss 0.01

    Command execution in Sun systems via buffer overflow in the at program.

  • CVE-1999-0318Mar 1, 1997
    risk 0.00cvss —epss 0.01

    Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.

  • CVE-1999-0048Jan 27, 1997
    risk 0.00cvss —epss 0.03

    Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.

Page 27 of 28