Unicos contains a flaw that allows an unprivileged local user to read arbitrary files and modify system configurations. The issue is due to a non-descript flaw in the "accton" command.
NIS contains a flaw that may allow a malicious user to get password files. The issue is due to the insufficient access control for NIS Query. By guessing and requesting a domain name, a remote attacker can collect a password file from the NIS map replied by a NIS server, resulting in a loss of confidentiality, integrity, and/or availability.