Searching sun software vulnerabilities


In Sun Solaris and SunOS, man and catman contai


In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files.


Two Sun security certificates have been comprom


Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun.


smcboot in Sun SMC (Sun Management Center) 2.0

smcboot | SMC | Sun |

smcboot in Sun SMC (Sun Management Center) 2.0 in Solaris 8 allows local users to delete arbitrary files via a symlink attack on /tmp/smc$SMC_PORT.


Sun Java System Portal Server 6.2 (formerly Sun


Sun Java System Portal Server 6.2 (formerly Sun ONE) allows remote authenticated users to obtain Calendar Server privileges and modify Calendar data by changing the display options to a non-default view.


Multiple buffer overflows in Sun Java System We


Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary code via unknown vectors, possibly CONNECT requests.


Buffer overflow in the ping daemon of Sun Solar


Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code.


Unspecified vulnerability in Sun Fire 3800/4800


Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cause a denial of service (system controller hang) via IP Packets With Type of Service (TOS) Bits set.


Buffer overflow in Sun Java System Web Proxy Se


Buffer overflow in Sun Java System Web Proxy Server (aka Sun ONE Proxy Server) 3.6 SP6 allows remote attackers to execute arbitrary code via unknown vectors.


Unknown vulnerability in the Sun Solaris C libr


Unknown vulnerability in the Sun Solaris C library (libc and libproject) in Solaris 10 allows local users to gain privileges.


Unknown vulnerability in Sun ONE Application Se


Unknown vulnerability in Sun ONE Application Server 6.5 SP1 Maintenance Update 6 and earlier allows attackers to read files.


Unknown vulnerability in lpadmin on Sun Solaris


Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files.


Sun Update Connection in Sun Solaris 10, when c


Sun Update Connection in Sun Solaris 10, when configured to use a web proxy, allows local users to obtain the proxy authentication password via (1) an unspecified vector and (2) proxy log files.


Unspecified vulnerability in rsh in Sun Microsy


Unspecified vulnerability in rsh in Sun Microsystems Sun Grid Engine 5.3 before Monday, March 27, 2006 and N1 Grid Engine 6.0 before Monday, March 27, 2006 allows local users to gain root privileges.


Unspecified vulnerability in Sun Grid Engine 5.


Unspecified vulnerability in Sun Grid Engine 5.3 and Sun N1 Grid Engine 6.0, when configured in Certificate Security Protocol (CSP) Mode, allows local users to shut down the grid service or gain access, even if access is denied.


The crypto provider in Sun Solaris 10 3/05 HW2


The crypto provider in Sun Solaris 10 3/05 HW2 without patch 121236-01, when running on Sun Fire T2000 platforms, incorrectly verifies a DSA signature, which might prevent applications from detecting that the data has been modified.


Unspecified vulnerability in ipmitool for Sun F


Unspecified vulnerability in ipmitool for Sun Fire X2100M2 and X2200M2 allows local users to gain privileges and reset or turn off the server.


Unspecified vulnerability in the LDAP Software


Unspecified vulnerability in the LDAP Software Development Kit (SDK) for C, as used in Sun Java System Directory Server 5.2 up to Patch 4 and Sun ONE Directory Server 5.1, allows remote attackers to cause a denial of service (crash) via certain BER encodings.


srsexec in Sun Remote Services (SRS) Net Connec


srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file permissions when opening files, which allows local users to read the first line of arbitrary files via the -d and -v options.


Sun Java System Access Manager 7.1, when instal


Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 9.1 container, does not demand authentication after a container restart, which allows remote attackers to perform administrative tasks.


Unspecified vulnerability in Sun Java System Ac


Unspecified vulnerability in Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 8.x container, allows remote attackers to execute arbitrary code via unspecified vectors.


Software vulnerabilities results 1 to 20 of 260     
Page: 12345...14