rpc.ypupdated (NIS) allows remote users to execute arbitrary commands.
Published
Dec 12, 1995
Race condition in Linux mailx command allows local users to read user files.
Dec 1, 1995
Buffer overflow in Linux splitvt command gives root access to local users.
vhe_u_mnt program in HP-UX allows local users to create root files through symlinks.
Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote
Nov 30, 1995
Guessable magic cookies in X Windows allows remote attackers to execute commands, e.g. through xterm.
Nov 1, 1995
Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.
Oct 19, 1995
Telnet allows a remote client to specify environment variables including LD_LIBRARY_PATH, allowing an attacker to bypass the normal system libraries a
Oct 13, 1995
Livingston portmaster machines could be rebooted via a series of commands.
Oct 1, 1995
Some configurations of NIS+ in Linux allowed attackers to log in as the user "+".
Sep 7, 1995
The ghostscript command with the -dSAFER option allows remote attackers to execute commands.
Aug 31, 1995
A race condition in the Solaris ps command allows an attacker to overwrite critical files.
Aug 29, 1995
SunOS sendmail 5.59 through 5.65 uses popen to process a forwarding host argument, which allows local users to gain root privileges by modifying the I
Aug 23, 1995
In Sendmail, attackers can gain root privileges via SMTP by specifying an improper "mail from" address and an invalid "rcpt to" address that would cau
Aug 17, 1995
FormMail CGI program allows remote execution of commands.
Aug 2, 1995
AnyForm CGI remote execution.
Jul 31, 1995
In Cisco IOS 10.3, with the tacacs-ds or tacacs keyword, an extended IP access control list could bypass filtering.
rmmount in SunOS 5.7 may mount file systems without the nosuid flag set, contrary to the documentation and its use in previous versions of SunOS, whic
May 10, 1995
The SATAN session key may be disclosed if the user points the web browser to other sites, possibly allowing root access.
Apr 3, 1995
Vulnerability in BSD Telnet client with encryption and Kerberos 4 authentication allows remote attackers to decrypt the session via sniffing.
Mar 3, 1995