Vulnerability index

Browse CVEs

80 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
MEDIUM 5.5 CVE-2012-5603 proxies_controller.rb in Katello in Red Hat CloudForms before 1.1 does not properly check permissions, which allows remote authenticated users to rea… Cloudforms after 1.0 Fix from $1,6002013-01-04 HIGH 7.5 CVE-2011-4605 The (1) JNDI service, (2) HA-JNDI service, and (3) HAJNDIFactory invoker servlet in JBoss Enterprise Application Platform 4.3.0 CP10 and 5.1.2, Web P… Jboss Enterprise Application Platform after 5.2.0 Fix from $1,9502012-11-23 MEDIUM 5.0 CVE-2012-2680 Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, does not properly restrict access to resources, which a… Enterprise Mrg after 0.1.5192-4 Fix from $1,6002012-09-28 HIGH 7.5 CVE-2011-4608 mod_cluster in JBoss Enterprise Application Platform 5.1.2 for Red Hat Linux allows worker nodes to register with arbitrary virtual hosts, which allo… Jboss Enterprise Application Platform Mitigation only Fix from $1,9502012-01-27 MEDIUM 6.8 CVE-2011-2196 jboss-seam.jar in the JBoss Seam 2 framework 2.2.x and earlier, as distributed in Red Hat JBoss Enterprise SOA Platform 4.3.0.CP05 and 5.1.0; JBoss E… Jboss Enterprise Application Platform after 2.2.2 Fix from $1,6002011-07-27 MEDIUM 6.8 CVE-2011-1484 jboss-seam.jar in the JBoss Seam 2 framework 2.2.x and earlier, as distributed in Red Hat JBoss Enterprise SOA Platform 4.3.0.CP04 and 5.1.0 and JBos… Jboss Enterprise Application Platform after 2.2.2 Fix from $1,6002011-07-27 MEDIUM 5.5 CVE-2010-1171 Red Hat Network (RHN) Satellite 5.3 and 5.4 exposes a dangerous, obsolete XML-RPC API, which allows remote authenticated users to access arbitrary fi… Satellite Mitigation only Fix from $1,6002011-04-18 MEDIUM 6.9 CVE-2011-1146 libvirt.c in the API in Red Hat libvirt 0.8.8 does not properly restrict operations in a read-only connection, which allows remote attackers to cause… Libvirt Patch available Fix from $1,6002011-03-15 MEDIUM 6.9 CVE-2011-1011 The seunshare_mount function in sandbox/seunshare.c in seunshare in certain Red Hat packages of policycoreutils 2.0.83 and earlier in Red Hat Enterpr… Policycoreutils after 2.0.83 Fix from $1,6002011-02-24 MEDIUM 6.2 CVE-2011-0532 The (1) backup and restore scripts, (2) main initialization script, and (3) ldap-agent script in 389 Directory Server 1.2.x (aka Red Hat Directory Se… Directory Server Mitigation only Fix from $1,6002011-02-23 HIGH 7.5 CVE-2011-0706 The JNLPClassLoader class in IcedTea-Web before 1.0.1, as used in OpenJDK Runtime Environment 1.6.0, allows remote attackers to gain privileges via u… Icedtea Web Patch available Fix from $1,9502011-02-19 MEDIUM 6.8 CVE-2010-4351 The JNLP SecurityManager in IcedTea (IcedTea.so) 1.7 before 1.7.7, 1.8 before 1.8.4, and 1.9 before 1.9.4 for Java OpenJDK returns from the checkPerm… Icedtea Patch available Fix from $1,6002011-01-20 HIGH 7.5 CVE-2010-4179 The installation documentation for Red Hat Enterprise Messaging, Realtime and Grid (MRG) 1.3 recommends that Condor should be configured so that the … Enterprise Mrg Mitigation only Fix from $1,9502010-12-07 MEDIUM 6.6 CVE-2010-2784 The subpage MMIO initialization functionality in the subpage_register function in exec.c in QEMU-KVM, as used in the Hypervisor (aka rhev-hypervisor)… Enterprise Virtualization Patch available Fix from $1,6002010-08-24 MEDIUM 6.6 CVE-2010-0429 libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not prop… Enterprise Virtualization Patch available Fix from $1,6002010-08-24 MEDIUM 5.0 CVE-2010-1429EPSS 54% Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 allows remote attackers to obt… Jboss Enterprise Application Platform after 4.3.0 Fix from $1,6002010-04-28 MEDIUM 6.0 CVE-2008-4313 A certain Red Hat patch for tog-pegasus in OpenGroup Pegasus 2.7.0 does not properly configure the PAM tty name, which allows remote authenticated us… Enterprise Linux Patch available Fix from $1,6002008-11-27 HIGH 7.5 CVE-2008-1376 A certain Red Hat build script for nfs-utils before 1.0.9-35z.el5_2 on Red Hat Enterprise Linux (RHEL) 5 omits TCP wrappers support, which might allo… Nfs Utils Mitigation only Fix from $1,9502008-08-01 HIGH 7.5 CVE-2008-0893 Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, does not properly restrict access to CGI scripts, which allows re… Directory Server Patch available Fix from $1,9502008-04-16 HIGH 7.2 CVE-2000-0219 Red Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt. Linux Patch available Fix from $1,9502000-02-23