Caldera
Caldera, Inc. was a Canopy-funded software company founded in October 1994 and incorporated on 25 January 1995 by former Novell employees Bryan Wayne Sparks, Ransom H. Love and others to develop the Caldera Network Desktop (CND) and later create a Linux distribution named OpenLinux (COL). The company was originally based in Provo and later in Orem, Utah, USA.
Products
26- 52 CVEs
- 22 CVEs
- 19 CVEs
- 11 CVEs
- 8 CVEs
- 7 CVEs
- 3 CVEs
- 2 CVEs
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 0 CVEs
- 0 CVEs
- 0 CVEs
- 0 CVEs
Recent CVEs
102| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-1999-0043 | Cri | 0.67 | 9.8 | 0.45 | Dec 4, 1996 | Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others. | ||
| CVE-2021-42561 | Hig | 0.59 | 8.8 | 0.20 | Jan 12, 2022 | An issue was discovered in CALDERA 2.8.1. When activated, the Human plugin passes the unsanitized name parameter to a python "os.system" function. This allows attackers to use shell metacharacters (e.g., backticks "``" or dollar parenthesis "$()" ) in order to escape the current… | ||
| CVE-2021-42559 | Hig | 0.57 | 8.8 | 0.02 | Jan 12, 2022 | An issue was discovered in CALDERA 2.8.1. It contains multiple startup "requirements" that execute commands when starting the server. Because these commands can be changed via the REST API, an authenticated user can insert arbitrary commands that will execute when the server is… | ||
| CVE-2021-42560 | Hig | 0.57 | 8.8 | 0.02 | Jan 12, 2022 | An issue was discovered in CALDERA 2.9.0. The Debrief plugin receives base64 encoded "SVG" parameters when generating a PDF document. These SVG documents are parsed in an unsafe manner and can be leveraged for XXE attacks (e.g., File Exfiltration, Server Side Request Forgery,… | ||
| CVE-2020-19907 | Hig | 0.57 | 8.8 | 0.03 | Jul 12, 2021 | A command injection vulnerability in the sandcat plugin of Caldera 2.3.1 and earlier allows authenticated attackers to execute any command or service. | ||
| CVE-2021-42562 | Hig | 0.53 | 8.1 | 0.01 | Jan 12, 2022 | An issue was discovered in CALDERA 2.8.1. It does not properly segregate user privileges, resulting in non-admin users having access to read and modify configuration or other components that should only be accessible by admin users. | ||
| CVE-2021-36914 | Med | 0.40 | 6.1 | 0.01 | Apr 12, 2022 | Cross-Site Request Forgery (CSRF) vulnerability leading to Reflected Cross-Site Scripting (XSS) in CalderaWP License Manager (WordPress plugin) <= 1.2.11. | ||
| CVE-2021-42558 | Med | 0.40 | 6.1 | 0.01 | Jan 12, 2022 | An issue was discovered in CALDERA 2.8.1. It contains multiple reflected, stored, and self XSS vulnerabilities that may be exploited by authenticated and unauthenticated attackers. | ||
| CVE-2020-14462 | Med | 0.35 | 5.4 | 0.01 | Jun 19, 2020 | CALDERA 2.7.0 allows XSS via the Operation Name box. | ||
| CVE-2020-10807 | Med | 0.35 | 5.3 | 0.01 | Mar 22, 2020 | auth_svc in Caldera before 2.6.5 allows authentication bypass (for REST API requests) via a forged "localhost" string in the HTTP Host header. | ||
| CVE-2000-0917 | 0.09 | — | 0.79 | Dec 19, 2000 | Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands. | |||
| CVE-1999-0368 | 0.06 | — | 0.40 | Feb 9, 1999 | Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. | |||
| CVE-1999-0002 | 0.05 | — | 0.28 | Oct 12, 1998 | Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems. | |||
| CVE-1999-0009 | 0.05 | — | 0.29 | Apr 8, 1998 | Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases. | |||
| CVE-2000-0844 | 0.04 | — | 0.16 | Nov 14, 2000 | Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. | |||
| CVE-2000-0594 | 0.04 | — | 0.10 | Jul 4, 2000 | BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters. | |||
| CVE-2000-0491 | 0.04 | — | 0.18 | May 24, 2000 | Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request. | |||
| CVE-1999-0879 | 0.04 | — | 0.10 | Oct 1, 1999 | Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file. | |||
| CVE-1999-0042 | 0.04 | — | 0.13 | Apr 7, 1997 | Buffer overflow in University of Washington's implementation of IMAP and POP servers. | |||
| CVE-2014-2934 | 0.03 | — | 0.02 | May 8, 2014 | Multiple SQL injection vulnerabilities in Caldera 9.20 allow remote attackers to execute arbitrary SQL commands via the tr parameter to (1) costview2/jobs.php or (2) costview2/printers.php. |
- risk 0.67cvss 9.8epss 0.45
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
- risk 0.59cvss 8.8epss 0.20
An issue was discovered in CALDERA 2.8.1. When activated, the Human plugin passes the unsanitized name parameter to a python "os.system" function. This allows attackers to use shell metacharacters (e.g., backticks "``" or dollar parenthesis "$()" ) in order to escape the current…
- risk 0.57cvss 8.8epss 0.02
An issue was discovered in CALDERA 2.8.1. It contains multiple startup "requirements" that execute commands when starting the server. Because these commands can be changed via the REST API, an authenticated user can insert arbitrary commands that will execute when the server is…
- risk 0.57cvss 8.8epss 0.02
An issue was discovered in CALDERA 2.9.0. The Debrief plugin receives base64 encoded "SVG" parameters when generating a PDF document. These SVG documents are parsed in an unsafe manner and can be leveraged for XXE attacks (e.g., File Exfiltration, Server Side Request Forgery,…
- risk 0.57cvss 8.8epss 0.03
A command injection vulnerability in the sandcat plugin of Caldera 2.3.1 and earlier allows authenticated attackers to execute any command or service.
- risk 0.53cvss 8.1epss 0.01
An issue was discovered in CALDERA 2.8.1. It does not properly segregate user privileges, resulting in non-admin users having access to read and modify configuration or other components that should only be accessible by admin users.
- risk 0.40cvss 6.1epss 0.01
Cross-Site Request Forgery (CSRF) vulnerability leading to Reflected Cross-Site Scripting (XSS) in CalderaWP License Manager (WordPress plugin) <= 1.2.11.
- risk 0.40cvss 6.1epss 0.01
An issue was discovered in CALDERA 2.8.1. It contains multiple reflected, stored, and self XSS vulnerabilities that may be exploited by authenticated and unauthenticated attackers.
- risk 0.35cvss 5.4epss 0.01
CALDERA 2.7.0 allows XSS via the Operation Name box.
- risk 0.35cvss 5.3epss 0.01
auth_svc in Caldera before 2.6.5 allows authentication bypass (for REST API requests) via a forged "localhost" string in the HTTP Host header.
- CVE-2000-0917Dec 19, 2000risk 0.09cvss —epss 0.79
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
- CVE-1999-0368Feb 9, 1999risk 0.06cvss —epss 0.40
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
- CVE-1999-0002Oct 12, 1998risk 0.05cvss —epss 0.28
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
- CVE-1999-0009Apr 8, 1998risk 0.05cvss —epss 0.29
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
- CVE-2000-0844Nov 14, 2000risk 0.04cvss —epss 0.16
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
- CVE-2000-0594Jul 4, 2000risk 0.04cvss —epss 0.10
BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.
- CVE-2000-0491May 24, 2000risk 0.04cvss —epss 0.18
Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.
- CVE-1999-0879Oct 1, 1999risk 0.04cvss —epss 0.10
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.
- CVE-1999-0042Apr 7, 1997risk 0.04cvss —epss 0.13
Buffer overflow in University of Washington's implementation of IMAP and POP servers.
- CVE-2014-2934May 8, 2014risk 0.03cvss —epss 0.02
Multiple SQL injection vulnerabilities in Caldera 9.20 allow remote attackers to execute arbitrary SQL commands via the tr parameter to (1) costview2/jobs.php or (2) costview2/printers.php.