Vulnerabilities
Vulnerable Software
Openbsd:  >> Openbsd  >> 2.4  Security Vulnerabilities
OpenBSD 2.6 and earlier allows remote attackers to cause a denial of service by flooding the server with ARP requests.
CVSS Score
5.0
EPSS Score
0.077
Published
2000-12-19
Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd.
CVSS Score
7.2
EPSS Score
0.002
Published
2000-12-19
Format string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root privileges via the PWD environmental variable.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-12-19
Format string vulnerability in OpenBSD yp_passwd program (and possibly other BSD-based operating systems) allows attackers to gain root privileges a malformed name.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-12-19
Format string vulnerability in OpenBSD su program (and possibly other BSD-based operating systems) allows local attackers to gain root privileges via a malformed shell.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-12-19
Format string vulnerabilities in eeprom program in OpenBSD, NetBSD, and possibly other operating systems allows local attackers to gain root privileges.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-12-19
Format string vulnerability in OpenBSD photurisd allows local users to execute arbitrary commands via a configuration file directory name that contains formatting characters.
CVSS Score
4.6
EPSS Score
0.001
Published
2000-12-11
Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters.
CVSS Score
10.0
EPSS Score
0.023
Published
2000-12-11
Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.
CVSS Score
7.5
EPSS Score
0.017
Published
2000-10-20
mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.
CVSS Score
7.5
EPSS Score
0.177
Published
2000-10-20


Contact Us

Shodan ® - All rights reserved