Vulnerabilities
Vulnerable Software
Sco:  Security Vulnerabilities
Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local users to gain privileges via a long TERM environment variable to (1) atcronsh, (2) auditsh, (3) authsh, (4) backupsh, (5) lpsh, (6) sysadm.menu, or (7) termsh.
CVSS Score
4.6
EPSS Score
0.001
Published
2001-06-13
Buffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long message.
CVSS Score
10.0
EPSS Score
0.031
Published
2001-03-12
Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024.
CVSS Score
5.0
EPSS Score
0.005
Published
2001-03-12
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.
CVSS Score
10.0
EPSS Score
0.003
Published
2001-03-12
A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain root privileges.
CVSS Score
10.0
EPSS Score
0.005
Published
2001-03-12
Vulnerability in the passthru driver in SCO UnixWare 7.1.0 allows an attacker to cause a denial of service.
CVSS Score
5.0
EPSS Score
0.005
Published
2001-03-12
Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages.
CVSS Score
4.6
EPSS Score
0.001
Published
2001-03-12
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.
CVSS Score
7.5
EPSS Score
0.087
Published
2000-12-11
The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVSS Score
5.0
EPSS Score
0.005
Published
2000-11-14
The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed.
CVSS Score
7.2
EPSS Score
0.002
Published
2000-04-11


Contact Us

Shodan ® - All rights reserved