Vulnerabilities (CVE)

Filtered by vendor Sco Subscribe
Total 129 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-0791 2 Mozilla, Sco 2 Mozilla, Openserver 2024-02-28 7.5 HIGH 9.8 CRITICAL
The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the string used as input to the script.thaw JavaScript function, which is then deserialized and executed.
CVE-2001-0627 1 Sco 1 Openserver 2024-02-28 3.7 LOW N/A
vi as included with SCO OpenServer 5.0 - 5.0.6 allows a local attacker to overwrite arbitrary files via a symlink attack.
CVE-1999-0830 1 Sco 1 Unixware 2024-02-28 7.2 HIGH N/A
Buffer overflow in SCO UnixWare Xsco command via a long argument.
CVE-2004-0510 1 Sco 1 Openserver 2024-02-28 7.2 HIGH N/A
Multiple buffer overflows in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to execute arbitrary code, as demonstrated via the execmail program.
CVE-1999-0411 1 Sco 1 Openserver 2024-02-28 7.2 HIGH N/A
Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs, are vulnerable to a symlink attack, allowing a local user to gain root access.
CVE-2001-1148 1 Sco 1 Openserver 2024-02-28 4.6 MEDIUM N/A
Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local users to gain privileges via a long TERM environment variable to (1) atcronsh, (2) auditsh, (3) authsh, (4) backupsh, (5) lpsh, (6) sysadm.menu, or (7) termsh.
CVE-2000-0307 1 Sco 3 Open Desktop, Openserver, Unixware 2024-02-28 5.0 MEDIUM N/A
Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024.
CVE-1999-1303 1 Sco 5 Open Desktop, Open Desktop Lite, Openserver Enterprise System and 2 more 2024-02-28 7.2 HIGH N/A
Vulnerability in prwarn in SCO UNIX 4.2 and earlier allows local users to gain root access.
CVE-1999-1041 1 Sco 2 Openserver, Unix 2024-02-28 7.2 HIGH N/A
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a long TERM environmental variable and (2) a long entry in the .mscreenrc file.
CVE-2000-0306 1 Sco 1 Openserver 2024-02-28 10.0 HIGH N/A
Buffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long message.
CVE-1999-0845 1 Sco 1 Unixware 2024-02-28 7.2 HIGH N/A
Buffer overflow in SCO su program allows local users to gain root access via a long username.
CVE-1999-1305 1 Sco 5 Open Desktop, Open Desktop Lite, Openserver Enterprise System and 2 more 2024-02-28 7.2 HIGH N/A
Vulnerability in "at" program in SCO UNIX 4.2 and earlier allows local users to gain root access.
CVE-1999-0019 7 Data General, Ibm, Ncr and 4 more 10 Dg Ux, Aix, Mp-ras and 7 more 2024-02-28 5.0 MEDIUM N/A
Delete or create a file via rpc.statd, due to invalid information.
CVE-2000-1014 1 Sco 1 Unixware 2024-02-28 7.5 HIGH N/A
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.
CVE-2003-0937 1 Sco 2 Open Unix, Unixware 2024-02-28 4.6 MEDIUM N/A
SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local users to bypass protections for the "as" address space file for a process ID (PID) by obtaining a procfs file descriptor for the file and calling execve() on a setuid or setgid program, which leaves the descriptor open to the user.
CVE-2000-0003 1 Sco 1 Unixware 2024-02-28 10.0 HIGH N/A
Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.
CVE-2000-0130 1 Sco 1 Unixware 2024-02-28 7.2 HIGH N/A
Buffer overflow in SCO scohelp program allows remote attackers to execute commands.
CVE-2003-0658 2 Caldera, Sco 4 Openlinux Server, Openlinux Workstation, Openserver and 1 more 2024-02-28 5.0 MEDIUM N/A
Docview before 1.1-18 in Caldera OpenLinux 3.1.1, SCO Linux 4.0, OpenServer 5.0.7, configures the Apache web server in a way that allows remote attackers to read arbitrary publicly readable files via a certain URL, possibly related to rewrite rules.
CVE-1999-0828 1 Sco 1 Unixware 2024-02-28 3.6 LOW N/A
UnixWare pkg commands such as pkginfo, pkgcat, and pkgparam allow local users to read arbitrary files via the dacread permission.
CVE-1999-1253 1 Sco 2 Internet Faststart, Openserver 2024-02-28 7.2 HIGH N/A
Vulnerability in a kernel error handling routine in SCO OpenServer 5.0.2 and earlier, and SCO Internet FastStart 1.0, allows local users to gain root privileges.