sun software vulnerabilities
vulnerabilities.aspcode.net
Searching sun software vulnerabilities
In Sun Solaris and SunOS, man and catman contai
vulnerabilities
|
overwriting
|
arbitrary
|
contain
|
Solaris
|
catman
|
files
|
allow
|
SunOS
|
man
|
Sun
|
In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files.
Two Sun security certificates have been comprom
certificates
|
compromised
|
attackers
|
malicious
|
security
|
applets
|
signed
|
insert
|
appear
|
allow
|
which
|
could
|
have
|
make
|
such
|
been
|
code
|
Two
|
Sun
|
Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun.
smcboot in Sun SMC (Sun Management Center) 2.0
smcboot
|
SMC
|
Sun
|
smcboot in Sun SMC (Sun Management Center) 2.0 in Solaris 8 allows local users to delete arbitrary files via a symlink attack on /tmp/smc$SMC_PORT.
Sun Java System Portal Server 6.2 (formerly Sun
Portal
|
Server
|
System
|
Java
|
Sun
|
Sun Java System Portal Server 6.2 (formerly Sun ONE) allows remote authenticated users to obtain Calendar Server privileges and modify Calendar data by changing the display options to a non-default view.
Multiple buffer overflows in Sun Java System We
overflows
|
Multiple
|
System
|
Server
|
buffer
|
Proxy
|
Java
|
Sun
|
Web
|
Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary code via unknown vectors, possibly CONNECT requests.
Buffer overflow in the ping daemon of Sun Solar
arbitrary
|
overflow
|
Solaris
|
through
|
execute
|
daemon
|
Buffer
|
local
|
users
|
allow
|
code
|
ping
|
may
|
Sun
|
Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code.
Unspecified vulnerability in Sun Fire 3800/4800
3800/4800/4810/6800
|
vulnerability
|
Unspecified
|
V1280
|
Netra
|
Fire
|
Sun
|
Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cause a denial of service (system controller hang) via IP Packets With Type of Service (TOS) Bits set.
Buffer overflow in Sun Java System Web Proxy Se
overflow
|
System
|
Server
|
Buffer
|
Proxy
|
Java
|
Sun
|
Web
|
Buffer overflow in Sun Java System Web Proxy Server (aka Sun ONE Proxy Server) 3.6 SP6 allows remote attackers to execute arbitrary code via unknown vectors.
Unknown vulnerability in the Sun Solaris C libr
vulnerability
|
Solaris
|
library
|
Unknown
|
Sun
|
Unknown vulnerability in the Sun Solaris C library (libc and libproject) in Solaris 10 allows local users to gain privileges.
Unknown vulnerability in Sun ONE Application Se
vulnerability
|
Application
|
Maintenance
|
attackers
|
Unknown
|
earlier
|
allows
|
Update
|
Server
|
files
|
read
|
Sun
|
ONE
|
SP1
|
Unknown vulnerability in Sun ONE Application Server 6.5 SP1 Maintenance Update 6 and earlier allows attackers to read files.
Unknown vulnerability in lpadmin on Sun Solaris
vulnerability
|
arbitrary
|
overwrite
|
Solaris
|
Unknown
|
lpadmin
|
allows
|
files
|
local
|
users
|
Sun
|
Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files.
Sun Update Connection in Sun Solaris 10, when c
authentication
|
configured
|
Connection
|
password
|
Solaris
|
allows
|
obtain
|
Update
|
users
|
local
|
proxy
|
Sun
|
via
|
web
|
use
|
Sun Update Connection in Sun Solaris 10, when configured to use a web proxy, allows local users to obtain the proxy authentication password via (1) an unspecified vector and (2) proxy log files.
Unspecified vulnerability in rsh in Sun Microsy
vulnerability
|
Microsystems
|
Unspecified
|
Engine
|
before
|
Grid
|
rsh
|
Sun
|
Unspecified vulnerability in rsh in Sun Microsystems Sun Grid Engine 5.3 before Monday, March 27, 2006 and N1 Grid Engine 6.0 before Monday, March 27, 2006 allows local users to gain root privileges.
Unspecified vulnerability in Sun Grid Engine 5.
vulnerability
|
Certificate
|
Unspecified
|
configured
|
Protocol
|
Security
|
Engine
|
Grid
|
Sun
|
Unspecified vulnerability in Sun Grid Engine 5.3 and Sun N1 Grid Engine 6.0, when configured in Certificate Security Protocol (CSP) Mode, allows local users to shut down the grid service or gain access, even if access is denied.
The crypto provider in Sun Solaris 10 3/05 HW2
applications
|
incorrectly
|
platforms
|
121236-01
|
detecting
|
signature
|
verifies
|
provider
|
modified
|
Solaris
|
without
|
prevent
|
running
|
crypto
|
which
|
might
|
T2000
|
patch
|
data
|
3/05
|
Fire
|
been
|
has
|
HW2
|
DSA
|
Sun
|
The crypto provider in Sun Solaris 10 3/05 HW2 without patch 121236-01, when running on Sun Fire T2000 platforms, incorrectly verifies a DSA signature, which might prevent applications from detecting that the data has been modified.
Unspecified vulnerability in ipmitool for Sun F
vulnerability
|
Unspecified
|
privileges
|
ipmitool
|
X2100M2
|
X2200M2
|
server
|
allows
|
reset
|
users
|
local
|
turn
|
gain
|
Fire
|
Sun
|
off
|
Unspecified vulnerability in ipmitool for Sun Fire X2100M2 and X2200M2 allows local users to gain privileges and reset or turn off the server.
Unspecified vulnerability in the LDAP Software
vulnerability
|
Development
|
Unspecified
|
Software
|
LDAP
|
Kit
|
Unspecified vulnerability in the LDAP Software Development Kit (SDK) for C, as used in Sun Java System Directory Server 5.2 up to Patch 4 and Sun ONE Directory Server 5.1, allows remote attackers to cause a denial of service (crash) via certain BER encodings.
srsexec in Sun Remote Services (SRS) Net Connec
Services
|
srsexec
|
Remote
|
Sun
|
srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file permissions when opening files, which allows local users to read the first line of arbitrary files via the -d and -v options.
Sun Java System Access Manager 7.1, when instal
administrative
|
authentication
|
Application
|
container
|
attackers
|
installed
|
restart
|
perform
|
Manager
|
remote
|
allows
|
demand
|
Access
|
Server
|
System
|
tasks
|
after
|
which
|
Java
|
does
|
Sun
|
not
|
Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 9.1 container, does not demand authentication after a container restart, which allows remote attackers to perform administrative tasks.
Unspecified vulnerability in Sun Java System Ac
vulnerability
|
Application
|
Unspecified
|
installed
|
container
|
attackers
|
arbitrary
|
vectors
|
Manager
|
execute
|
remote
|
allows
|
System
|
Access
|
Server
|
code
|
Java
|
Sun
|
via
|
Unspecified vulnerability in Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 8.x container, allows remote attackers to execute arbitrary code via unspecified vectors.
Software vulnerabilities results 1 to 20 of 260
Page:
1
2
3
4
5
...
14
►