Irix

Vendor:

First CVE: Oct 31, 1990 · Active for 35 years

187
Total CVEs
More Total CVEs than 99% of tracked products
11.0
Avg CVEs / Year
Higher CVE frequency than 96% of tracked products
6.5
Avg CVSS
Higher Avg CVSS than 29% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Irix over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 31, 1990
35 years ago
Most Recent CVE
Jan 4, 2012
5,316 days ago

CVE Severity & Scoring

Irix187 CVEs
All CVEs352,708 CVEs
LowMediumHighCritical
Attack Vector
Local5 (2.7%)
Network6 (3.2%)
Unknown176 (94.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low11 (5.9%)
High0 (0.0%)
Unknown176 (94.1%)
User Interaction
None11 (5.9%)
Unknown176 (94.1%)
Required0 (0.0%)
Privileges Required
Low2 (1.1%)
High0 (0.0%)
None9 (4.8%)
Unknown176 (94.1%)

Top CVEs

Signals from CVEs in this product scope (187 CVEs).

187 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as
Dec 12, 200110.088NOYES
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
Dec 6, 200110.078NOYES
The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.
Oct 6, 200310.073NOYES
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the over
Dec 11, 200210.064NOYES
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You Th
Aug 14, 200110.060NOYES
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Apr 8, 199810.054NOYES
Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCplus B.11.31_09 and earlier on HP HP-UX B
May 20, 201010.053NOYES
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_
Jun 18, 200110.052NOYES
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
Apr 1, 199810.051NOYES
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to execute with arbitrary comman
Jan 8, 200010.045NOYES

Exploit Exposure

Signals from CVEs in this product scope (187 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
4 CVEs
2.1% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
70 CVEs
37.4% of CVEs· 91st percentile

Social Chatter

Signals from CVEs in this product scope (187 CVEs).

Media Mentions

Signals from CVEs in this product scope (187 CVEs).

Top CNAs Publishing CVEs For Irix

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
6.5.9m126.72.6%01
6.5.9f126.72.6%01
6.5.9505.83.9%06
6.5.8m126.72.6%01
6.5.8f126.72.6%01
6.5.8545.94.5%010
6.5.7m126.72.6%01
6.5.7f126.72.6%01
6.5.7556.04.6%011
6.5.6m126.72.6%01
6.5.6f126.72.6%01
6.5.6566.04.5%011
6.5.5m126.72.6%01
6.5.5f126.72.6%01
6.5.5525.94.2%07
6.5.4m126.72.6%01
6.5.4f126.72.6%01
6.5.4576.04.5%011
6.5.3m187.15.0%06
6.5.3f187.15.0%06