Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2016-2094
The HTTPS NIO Connector allows remote attackers to cause a denial of service (thread consumption) by opening a socket and not sending an SSL handshak…
Enterprise Application Platform
Mitigation only
MEDIUM 5.0
CVE-2008-3273EPSS 47%
JBoss Enterprise Application Platform (aka JBossEAP or EAP) before 4.2.0.CP03, and 4.3.0 before 4.3.0.CP01, allows remote attackers to obtain sensiti…
Enterprise Application Platform
after 4.3.0
HIGH 7.5
CVE-2007-6433
The getRenderedEjbql method in the org.jboss.seam.framework.Query class in JBoss Seam 2.x before 2.0.0.CR3 allows remote attackers to inject and exec…
Seam
after 2.0.0
MEDIUM 6.0
CVE-2007-1354
The Access Control functionality (JMXOpsAccessControlFilter) in JMX Console in JBoss Application Server 4.0.2 and 4.0.5 before 20070416 uses a member…
Jboss Application Server
Patch available
HIGH 7.6
CVE-2007-1157
Cross-site request forgery (CSRF) vulnerability in jmx-console/HtmlAdaptor in JBoss allows remote attackers to perform privileged actions as administ…
Jboss
Mitigation only
HIGH 7.5
CVE-2007-1036EPSS 82%
The default configuration of JBoss does not restrict access to the (1) console and (2) web management interfaces, which allows remote attackers to by…
Jboss Application Server
Mitigation only
HIGH 7.5
CVE-2006-5750EPSS 14%
Directory traversal vulnerability in the DeploymentFileRepository class in JBoss Application Server (jbossas) 3.2.4 through 4.0.5 allows remote authe…
Jboss Application Server
Patch available
HIGH 7.5
CVE-2005-2158
A regression error in the embedded HSQLDB in JBoss jBPM 2.0 allows remote attackers to execute arbitrary comands, a re-introduction of a vulnerabilit…
Jbpm
Patch available
MEDIUM 5.0
CVE-2005-2006EPSS 9%
JBOSS 3.2.2 through 3.2.7 and 4.0.2 allows remote attackers to obtain sensitive information via a GET request (1) with a "%." (percent dot), which re…
Jboss
Mitigation only
HIGH 7.5
CVE-2003-0845EPSS 15%
Unknown vulnerability in the HSQLDB component in JBoss 3.2.1 and 3.0.8 on Java 1.4.x platforms, when running in the default configuration, allows rem…
Jboss
Patch available