Vulnerabilities
Vulnerable Software
Caldera:  >> Openlinux  >> 2.2  Security Vulnerabilities
The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.
CVSS Score
5.0
EPSS Score
0.021
Published
2002-10-28
Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable.
CVSS Score
7.2
EPSS Score
0.001
Published
1999-08-25
Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file.
CVSS Score
7.2
EPSS Score
0.001
Published
1999-08-25
The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain sensitive information or bypass additional access restrictions.
CVSS Score
10.0
EPSS Score
0.003
Published
1999-08-22
The KDE klock program allows local users to unlock a session using malformed input.
CVSS Score
4.6
EPSS Score
0.001
Published
1999-06-23
A vulnerability in Caldera Open Administration System (COAS) allows the /etc/shadow password file to be made world-readable.
CVSS Score
2.1
EPSS Score
0.001
Published
1999-04-27


Contact Us

Shodan ® - All rights reserved