| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Buffer overflow in University of Washington's implementation of IMAP and POP servers. |
| File creation and deletion, and remote execution, in the BSD line printer daemon (lpd). |
| Listening TCP ports are sequentially allocated, allowing spoofing attacks. |
| Buffer overflow in wu-ftp from PASV command causes a core dump. |
| Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command. |
| getcwd() file descriptor leak in FTP. |
| The debug command in Sendmail is enabled, allowing attackers to execute commands as root. |
| Buffer overflow in AIX libDtSvc library can allow local users to gain root access. |
| Echo and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a. UDP bomb or UDP packet storm. |
| RIP v1 is susceptible to spoofing. |
| Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood. |
| Buffer overflow in AIX lchangelv gives root access. |
| swinstall and swmodify commands in SD-UX package in HP-UX systems allow local users to create or overwrite arbitrary files to gain root access. |
| The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access. |
| Sendmail WIZ command enabled, allowing root access. |
| The SATAN session key may be disclosed if the user points the web browser to other sites, possibly allowing root access. |
| The wall daemon can be used for denial of service, social engineering attacks, or to execute remote commands. |
| In Sendmail, attackers can gain root privileges via SMTP by specifying an improper "mail from" address and an invalid "rcpt to" address that would cause the mail to bounce to a program. |
| Denial of service in Windows NT DNS servers by flooding port 53 with too many characters. |
| nis_cachemgr for Solaris NIS+ allows attackers to add malicious NIS+ servers. |