Vulnerabilities (CVE)

Filtered by vendor Sco Subscribe
Total 129 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-1148 1 Sco 1 Openserver 2025-04-03 4.6 MEDIUM N/A
Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local users to gain privileges via a long TERM environment variable to (1) atcronsh, (2) auditsh, (3) authsh, (4) backupsh, (5) lpsh, (6) sysadm.menu, or (7) termsh.
CVE-1999-1303 1 Sco 5 Open Desktop, Open Desktop Lite, Openserver Enterprise System and 2 more 2025-04-03 7.2 HIGH N/A
Vulnerability in prwarn in SCO UNIX 4.2 and earlier allows local users to gain root access.
CVE-2005-0109 5 Freebsd, Redhat, Sco and 2 more 8 Freebsd, Enterprise Linux, Enterprise Linux Desktop and 5 more 2025-04-03 4.7 MEDIUM 5.6 MEDIUM
Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.
CVE-1999-0851 3 Ibm, Sco, Sun 4 Aix, Openserver, Unixware and 1 more 2025-04-03 2.1 LOW N/A
Denial of service in BIND named via naptr.
CVE-2005-2132 1 Sco 1 Unixware 2025-04-03 2.1 LOW N/A
RPC portmapper (rpcbind) in SCO UnixWare 7.1.1 m5, 7.1.3 mp5, and 7.1.4 mp2 allows remote attackers or local users to cause a denial of service (lack of response) via multiple invalid portmap requests.
CVE-1999-0866 1 Sco 1 Unixware 2025-04-03 7.2 HIGH N/A
Buffer overflow in UnixWare xauto program allows local users to gain root privilege.
CVE-1999-0697 1 Sco 1 Openserver 2025-04-03 7.2 HIGH N/A
SCO Doctor allows local users to gain root privileges through a Tools option.
CVE-2000-0173 1 Sco 1 Unixware 2025-04-03 5.0 MEDIUM N/A
Vulnerability in the EELS system in SCO UnixWare 7.1.x allows remote attackers to cause a denial of service.
CVE-2005-2934 1 Sco 1 Unixware 2025-04-03 7.2 HIGH N/A
Unspecified vulnerability in ptrace in SCO UnixWare 7.1.3 and 7.1.4 allows local users to gain privileges via unspecified vectors.
CVE-1999-0019 7 Data General, Ibm, Ncr and 4 more 10 Dg Ux, Aix, Mp-ras and 7 more 2025-04-03 5.0 MEDIUM N/A
Delete or create a file via rpc.statd, due to invalid information.
CVE-1999-0893 1 Sco 1 Openserver 2025-04-03 2.1 LOW N/A
userOsa in SCO OpenServer allows local users to corrupt files via a symlink attack.
CVE-2003-0597 1 Sco 1 Openserver 2025-04-03 7.2 HIGH N/A
Unknown vulnerability in display of Merge before 5.3.23a in UnixWare 7.1.x allows local users to gain root privileges.
CVE-2000-0308 2 Netscape, Sco 4 Enterprise Server, Fasttrack Server, Proxy Server and 1 more 2025-04-03 10.0 HIGH N/A
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.
CVE-2004-1082 8 Apache, Apple, Avaya and 5 more 14 Http Server, Apache Mod Digest Apple, Communication Manager and 11 more 2025-04-03 7.5 HIGH N/A
mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials.
CVE-2001-0577 1 Sco 1 Openserver 2025-04-03 7.2 HIGH N/A
recon in SCO OpenServer 5.0 through 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first command line argument.
CVE-1999-0411 1 Sco 1 Openserver 2025-04-03 7.2 HIGH N/A
Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs, are vulnerable to a symlink attack, allowing a local user to gain root access.
CVE-2004-0112 24 4d, Apple, Avaya and 21 more 65 Webstar, Mac Os X, Mac Os X Server and 62 more 2025-04-03 5.0 MEDIUM N/A
The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.
CVE-1999-0988 1 Sco 1 Unixware 2025-04-03 7.2 HIGH N/A
UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack.
CVE-2000-0026 2 Sco, Windowmaker 2 Unixware, Wmmon 2025-04-03 10.0 HIGH N/A
Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string.
CVE-2003-0282 2 Info-zip, Sco 3 Unzip, Openlinux Server, Openlinux Workstation 2025-04-03 2.6 LOW N/A
Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence.