Vulnerabilities
Vulnerable Software
Ibm:  >> Aix  Security Vulnerabilities
lscfg in IBM AIX 5.2 and 5.3 allows local users to modify arbitrary files via a symlink attack.
CVSS Score
4.6
EPSS Score
0.003
Published
2006-03-10
Unspecified vulnerability in the (1) unix_mp and (2) unix_64 kernels in IBM AIX 5.3 VRMF 5.3.0.30 through 5.3.0.33 allows local users to cause a denial of service (system crash) via unknown vectors related to EMULATE_VMX.
CVSS Score
4.9
EPSS Score
0.004
Published
2006-02-15
Buffer overflow in the arp command of IBM AIX 5.3 L, 5.3, 5.2.2, 5.2 L, and 5.2 allows local users to cause a denial of service (crash) via a long iftype argument.
CVSS Score
4.6
EPSS Score
0.004
Published
2006-02-13
Multiple directory traversal vulnerabilities in AIX 5.3 ML03 allow local users to determine the existence of files and read partial contents of certain files via a .. (dot dot) in the argument to (1) getCommand.new (aka getCommand) and (2) getShell, a different vulnerability than CVE-2005-4273.
CVSS Score
3.6
EPSS Score
0.01
Published
2006-01-09
Buffer overflow in the malloc debug system in IBM AIX 5.3 allows local users to execute arbitrary code.
CVSS Score
7.2
EPSS Score
0.005
Published
2005-12-15
Multiple buffer overflows in IBM AIX 5.1, 5.2, and 5.3 allow remote attackers to execute arbitrary code via (1) muxatmd and (2) slocal.
CVSS Score
10.0
EPSS Score
0.09
Published
2005-12-15
Multiple unspecified vulnerabilities in (1) getShell and (2) getCommand in IBM AIX 5.3 allow local users to append to arbitrary files.
CVSS Score
2.1
EPSS Score
0.004
Published
2005-12-15
Unspecified "absolute path vulnerability" in umountall in IBM AIX 5.1 through 5.3 allows local users to cause unknown impact via unknown vectors.
CVSS Score
7.2
EPSS Score
0.004
Published
2005-12-08
Unspecified "absolute path vulnerabilities" in the diagela command (diagela.sh) in IBM AIX 5.2 and 5.3 have unknown impact and attack vectors.
CVSS Score
7.2
EPSS Score
0.004
Published
2005-11-22
Buffer overflow in swcons in IBM AIX 5.2, when debug malloc is enabled, allows remote attackers to cause a core dump and possibly execute arbitrary code.
CVSS Score
7.5
EPSS Score
0.032
Published
2005-11-05


Contact Us

Shodan ® - All rights reserved