📦

openserver

Vendor: sco

Actively Exploited 0 CISA KEV List
PoC / Exploits 15 Code Available
Total RCEs 5 Remote Access
Total CVEs 67 Total Indexed
Avg. EPSS 2.97% Exploit Prob.
Latest CVE CVE-2006-0072 Jan 04

Security Vulnerability Index

Page 2 / 7
2.1 CVSS

Multiple unknown vulnerabilities in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to cause a denial of service by triggering a core dump.

EPSS: 0.07%
7.2 CVSS
CVE-2004-0510
Exploit Found

Multiple buffer overflows in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to execute arbitrary code, as demonstrated via the execmail program.

EPSS: 0.54%
4.6 CVSS

Unknown vulnerability in chroot on SCO UnixWare 7.1.1 through 7.1.4 allows local users to escape the chroot jail and conduct unauthorized activities.

EPSS: 0.10%
2.1 CVSS

Certain scripts in OpenServer before 5.0.6 allow local users to overwrite files and conduct other unauthorized activities via a symlink attack on temporary files.

EPSS: 0.10%
7.2 CVSS

SCO Internet Manager (mana) allows local users to execute arbitrary programs by setting the REMOTE_ADDR environment variable to cause menu.mana to run as if it were called from ncsa_httpd, then modifying the PATH environment variable to point to a malicious "hostname" program.

EPSS: 0.08%
7.2 CVSS

Unknown vulnerability in display of Merge before 5.3.23a in UnixWare 7.1.x allows local users to gain root privileges.

EPSS: 0.08%
5.0 CVSS

The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.

EPSS: 8.38%
7.2 CVSS

Format string vulnerability in crontab for SCO OpenServer 5.0.5 and 5.0.6 allows local users to gain privileges via format string specifiers in the file name argument.

EPSS: 0.20%
2.1 CVSS

Unknown vulnerability in SCO OpenServer 5.0.6 and earlier allows local users to modify critical information such as certain CPU registers and segment descriptors.

EPSS: 0.08%
4.6 CVSS

Buffer overflow in lpstat in SCO OpenServer 5.0 through 5.0.6a allows local users to execute arbitrary code as group bin via a long command line argument.

EPSS: 0.10%