Openserver
Vendor:
First CVE: Sep 17, 1993 · Active for 32 years
72
Total CVEs
More Total CVEs than 99% of tracked products
6.0
Avg CVEs / Year
Higher CVE frequency than 90% of tracked products
6.0
Avg CVSS
Higher Avg CVSS than 21% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Openserver over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 17, 1993
32 years ago
Most Recent CVE
Jan 4, 2006
7,506 days ago
CVE Severity & Scoring
Openserver72 CVEs
13%
39%
47%
All CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local1 (1.4%)
Network2 (2.8%)
Unknown68 (94.4%)
Physical0 (0.0%)
Adjacent Network1 (1.4%)
Attack Complexity
Low3 (4.2%)
High1 (1.4%)
Unknown68 (94.4%)
User Interaction
None4 (5.6%)
Unknown68 (94.4%)
Required0 (0.0%)
Privileges Required
Low1 (1.4%)
High0 (0.0%)
None3 (4.2%)
Unknown68 (94.4%)
Top CVEs
Signals from CVEs in this product scope (72 CVEs).
72 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2001-0797HIGH Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as | Dec 12, 2001 | 10.0 | 88 | NO | YES |
CVE-1999-0128MEDIUM Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death. | Dec 18, 1996 | 5.0 | 63 | NO | YES |
CVE-1999-0368HIGH Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. | Feb 9, 1999 | 10.0 | 60 | NO | YES |
CVE-2000-0306HIGH Buffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long message. | Mar 12, 2001 | 10.0 | 36 | NO | YES |
CVE-2004-0390HIGH SCO OpenServer 5.0.5 through 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote attackers to gain unauthorized access to an X | Dec 31, 2004 | 7.5 | 35 | NO | YES |
CVE-2004-0510HIGH Multiple buffer overflows in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to execute arbitrary code, as demonstrated via the execma | Dec 23, 2004 | 7.2 | 33 | NO | YES |
CVE-1999-0153MEDIUM Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke. | Jul 1, 1997 | 5.0 | 32 | NO | YES |
CVE-2006-0072HIGH Buffer overflow in termsh on SCO OpenServer 5.0.7 allows remote attackers to execute arbitrary code via a long -o command line argument. NOTE: this is probably a different vulnera | Jan 4, 2006 | 7.5 | 30 | NO | YES |
CVE-2003-0791CRITICAL The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the string used as input to the script.thaw JavaSc | Oct 7, 2003 | 9.8 | 30 | NO | NO |
CVE-2004-0079HIGH The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake t | Nov 23, 2004 | 7.5 | 29 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (72 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
1.4% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
19 CVEs
26.4% of CVEs· 90th percentile
Social Chatter
Signals from CVEs in this product scope (72 CVEs).
Media Mentions
Signals from CVEs in this product scope (72 CVEs).
Top CNAs Publishing CVEs For Openserver
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 6.0 | 3 | 6.7 | 3.2% | 0 | 0 |
| 5.0.7 | 21 | 6.1 | 2.9% | 0 | 5 |
| 5.0.6a | 7 | 5.5 | 14.2% | 0 | 4 |
| 5.0.6 | 24 | 5.7 | 6.0% | 0 | 7 |
| 5.0.5 | 15 | 6.3 | 9.7% | 0 | 4 |
| 5.0.4 | 9 | 7.3 | 15.6% | 0 | 3 |
| 5.0.3 | 5 | 7.2 | 26.9% | 0 | 3 |
| 5.0.2 | 12 | 6.7 | 18.0% | 0 | 5 |
| 5.0.1 | 4 | 6.5 | 23.6% | 0 | 2 |
| 5.0.0 | 1 | 7.2 | 0.4% | 0 | 0 |
| 5.0 | 23 | 6.2 | 11.1% | 0 | 9 |
| 5 | 5 | 5.2 | 0.9% | 0 | 0 |
| 3.0 | 6 | 7.3 | 0.9% | 0 | 1 |
| 2.0 | 1 | 7.2 | 0.8% | 0 | 1 |