VYPR
Vendor

Caldera

Caldera, Inc. was a Canopy-funded software company founded in October 1994 and incorporated on 25 January 1995 by former Novell employees Bryan Wayne Sparks, Ransom H. Love and others to develop the Caldera Network Desktop (CND) and later create a Linux distribution named OpenLinux (COL). The company was originally based in Provo and later in Orem, Utah, USA.

Founded 1994
Products
26
CVEs
102
Across products
138
Status
Private

Products

26

Recent CVEs

102
View all 102 CVEs →
  • CVE-1999-0043CriDec 4, 1996
    risk 0.67cvss 9.8epss 0.45

    Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.

  • CVE-2021-42561HigJan 12, 2022
    risk 0.59cvss 8.8epss 0.20

    An issue was discovered in CALDERA 2.8.1. When activated, the Human plugin passes the unsanitized name parameter to a python "os.system" function. This allows attackers to use shell metacharacters (e.g., backticks "``" or dollar parenthesis "$()" ) in order to escape the current…

  • CVE-2021-42559HigJan 12, 2022
    risk 0.57cvss 8.8epss 0.02

    An issue was discovered in CALDERA 2.8.1. It contains multiple startup "requirements" that execute commands when starting the server. Because these commands can be changed via the REST API, an authenticated user can insert arbitrary commands that will execute when the server is…

  • CVE-2021-42560HigJan 12, 2022
    risk 0.57cvss 8.8epss 0.02

    An issue was discovered in CALDERA 2.9.0. The Debrief plugin receives base64 encoded "SVG" parameters when generating a PDF document. These SVG documents are parsed in an unsafe manner and can be leveraged for XXE attacks (e.g., File Exfiltration, Server Side Request Forgery,…

  • CVE-2020-19907HigJul 12, 2021
    risk 0.57cvss 8.8epss 0.03

    A command injection vulnerability in the sandcat plugin of Caldera 2.3.1 and earlier allows authenticated attackers to execute any command or service.

  • CVE-2021-42562HigJan 12, 2022
    risk 0.53cvss 8.1epss 0.01

    An issue was discovered in CALDERA 2.8.1. It does not properly segregate user privileges, resulting in non-admin users having access to read and modify configuration or other components that should only be accessible by admin users.

  • CVE-2021-36914MedApr 12, 2022
    risk 0.40cvss 6.1epss 0.01

    Cross-Site Request Forgery (CSRF) vulnerability leading to Reflected Cross-Site Scripting (XSS) in CalderaWP License Manager (WordPress plugin) <= 1.2.11.

  • CVE-2021-42558MedJan 12, 2022
    risk 0.40cvss 6.1epss 0.01

    An issue was discovered in CALDERA 2.8.1. It contains multiple reflected, stored, and self XSS vulnerabilities that may be exploited by authenticated and unauthenticated attackers.

  • CVE-2020-14462MedJun 19, 2020
    risk 0.35cvss 5.4epss 0.01

    CALDERA 2.7.0 allows XSS via the Operation Name box.

  • CVE-2020-10807MedMar 22, 2020
    risk 0.35cvss 5.3epss 0.01

    auth_svc in Caldera before 2.6.5 allows authentication bypass (for REST API requests) via a forged "localhost" string in the HTTP Host header.

  • CVE-2000-0917Dec 19, 2000
    risk 0.09cvss —epss 0.79

    Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.

  • CVE-1999-0368Feb 9, 1999
    risk 0.06cvss —epss 0.40

    Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.

  • CVE-1999-0002Oct 12, 1998
    risk 0.05cvss —epss 0.28

    Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.

  • CVE-1999-0009Apr 8, 1998
    risk 0.05cvss —epss 0.29

    Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.

  • CVE-2000-0844Nov 14, 2000
    risk 0.04cvss —epss 0.16

    Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.

  • CVE-2000-0594Jul 4, 2000
    risk 0.04cvss —epss 0.10

    BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.

  • CVE-2000-0491May 24, 2000
    risk 0.04cvss —epss 0.18

    Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.

  • CVE-1999-0879Oct 1, 1999
    risk 0.04cvss —epss 0.10

    Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.

  • CVE-1999-0042Apr 7, 1997
    risk 0.04cvss —epss 0.13

    Buffer overflow in University of Washington's implementation of IMAP and POP servers.

  • CVE-2014-2934May 8, 2014
    risk 0.03cvss —epss 0.02

    Multiple SQL injection vulnerabilities in Caldera 9.20 allow remote attackers to execute arbitrary SQL commands via the tr parameter to (1) costview2/jobs.php or (2) costview2/printers.php.