Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs, are vulnerable to a symlink attack, allowing a local user to gain root access.
📦
openserver
Vendor: sco
Actively Exploited
0
CISA KEV List
PoC / Exploits
15
Code Available
Total RCEs
5
Remote Access
Total CVEs
67
Total Indexed
Avg. EPSS
2.97%
Exploit Prob.
Security Vulnerability Index
Page 5 / 7
7.2
CVSS
Severity: HIGH
7.2
CVSS
A weak encryption algorithm is used for passwords in SCO TermVision, allowing them to be easily decrypted by a local user.
Severity: HIGH
7.5
CVSS
Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1 and earlier, allows remote attackers to gain privileges.
Severity: HIGH
0.0
CVSS