Skip to main content

Vendor/product archive

sun / staroffice CVEs

Beta · best-effort

10 CVEs tagged to sun / staroffice3 Critical, 3 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2006-5870

Published Dec 31, 2006

Multiple integer overflows in OpenOffice.org (OOo) 2.0.4 and earlier, and possibly other versions before 2.1.0; and StarOffice 6 through 8; allow user-assisted remote attackers to…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2198

Published Jun 30, 2006

OpenOffice.org (aka StarOffice) 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to conduct unauthorized activities via an OpenOffice document with a malici…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2006-2199

Published Jun 30, 2006

Unspecified vulnerability in Java Applets in OpenOffice.org 1.1.x (aka StarOffice) up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to escape the Java sandbox and…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3117

Published Jun 30, 2006

Heap-based buffer overflow in OpenOffice.org (aka StarOffice) 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to execute arbitrary code via a crafted OpenO…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2000-1156

Published Jan 9, 2001

StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a local user to read files of the user who is using StarOffice.

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2000-0291

Published Apr 16, 2000

Buffer overflow in Star Office 5.1 allows attackers to cause a denial of service by embedding a long URL within a document.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0174

Published Mar 9, 2000

StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0175

Published Mar 9, 2000

Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1