| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Multiple buffer overflows in IBM AIX 5.1, 5.2, and 5.3 allow remote attackers to execute arbitrary code via (1) muxatmd and (2) slocal. |
| The Lotus Notes 4.5 client may send a copy of encrypted mail in the clear across the network if the user does not set the "Encrypt Saved Mail" preference. |
| The rwho/rwhod service is running, which exposes machine status and user information. |
| Buffer overflow in the arp command of IBM AIX 5.3 L, 5.3, 5.2.2, 5.2 L, and 5.2 allows local users to cause a denial of service (crash) via a long iftype argument. |
| Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable. |
| Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file. |
| RIP v1 is susceptible to spoofing. |
| AIX piodmgrsu command allows local users to gain additional group privileges. |
| AIX routed allows remote users to modify sensitive files. |
| Buffer overflow in AIX xdat gives root access to local users. |
| IBM WebSphere Advanced Server Edition 4.0.4 uses a weak encryption algorithm (XOR and base64 encoding), which allows local users to decrypt passwords when the configuration file is exported to XML. |
| slapd daemon in IBM Tivoli Directory Server (ITDS) 5.2.0 and 6.0.0 binds using SASL EXTERNAL, which allows attackers to bypass authentication and modify and delete directory data via unknown attack vectors. |
| Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer. |
| Unknown vulnerability in IBM Hardware Management Console (HMC) before 4.4 for POWER5 servers allows local users to gain privileges, related to the Guided Setup Wizard. |
| Delete or create a file via rpc.statd, due to invalid information. |
| Buffer overflow in xlock program allows local users to execute commands as root. |
| Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges. |
| Buffer overflow in NLS (Natural Language Service). |
| Buffer overflow in University of Washington's implementation of IMAP and POP servers. |
| Buffer overflow of rlogin program using TERM environmental variable. |