Vulnerability index

Browse CVEs

224 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Java Web Start HIGH 10.0
CVE-2007-5019EPSS 10%

Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote attackers to have an unknown impact…

No fix yet
Fix from $1,950 2007-09-20
Java System Application Server MEDIUM 5.0
CVE-2007-4511

The Sun Admin Console in Sun Application Server 9.0_0.1 does not apply certain configuration changes persistently, which causes the (1) SSL and (2) S…

Mitigation only
Fix from $1,600 2007-08-23
Cluster MEDIUM 6.8
CVE-2007-2267

Unspecified vulnerability in Sun Cluster 3.1 and Solaris Cluster 3.2 before 20070424 allows remote authenticated users, operating from a different cl…

Mitigation only
Fix from $1,600 2007-04-25
Java Web Console HIGH 7.5
CVE-2007-1681

Format string vulnerability in libwebconsole_services.so in Sun Java Web Console 2.2.2 through 2.2.5 allows remote attackers to cause a denial of ser…

Mitigation only
Fix from $1,950 2007-04-19
Java System Directory Server HIGH 7.8
CVE-2006-4175

The LDAP server (ns-slapd) in Sun Java System Directory Server 5.2 Patch4 and earlier and ONE Directory Server 5.1 and 5.2 allows remote attackers to…

Mitigation only
Fix from $1,950 2007-03-26
Sun Fire MEDIUM 6.6
CVE-2007-1346

Unspecified vulnerability in ipmitool for Sun Fire X2100M2 and X2200M2 allows local users to gain privileges and reset or turn off the server.

Mitigation only
Fix from $1,600 2007-03-08
Solaris HIGH 7.8
CVE-2006-7028

Single CPU Sun systems running Solaris 7, 8, or 9, such as Netra, allows remote attackers to cause a denial of service (console hang) via a flood of …

Mitigation only
Fix from $1,950 2007-02-23
Solaris HIGH 7.8
CVE-2006-5013

Sun Solaris 10 before patch 118855-16 (20060925), when run on x64 systems using IPv6, allows remote attackers to cause a denial of service (kernel pa…

Mitigation only
Fix from $1,950 2006-09-27
Secure Global Desktop MEDIUM 6.8
CVE-2006-4958

Multiple cross-site scripting (XSS) vulnerabilities in Sun Secure Global Desktop (SSGD, aka Tarantella) before 4.20.983 allows remote attackers to in…

Mitigation only
Fix from $1,600 2006-09-23
Secure Global Desktop MEDIUM 5.0
CVE-2006-4959

Sun Secure Global Desktop (SSGD, aka Tarantella) before 4.3 allows remote attackers to obtain sensitive information, including hostnames, versions, a…

No fix yet
Fix from $1,600 2006-09-23
Solaris HIGH 7.2
CVE-2006-4306

Unspecified vulnerability in Sun Solaris 8 and 9 before 20060821 allows local users to execute arbitrary commands via unspecified vectors, involving …

Mitigation only
Fix from $1,950 2006-08-23
Solaris HIGH 7.2
CVE-2006-4307

Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local users to modify arbitrary files via unspecified v…

Mitigation only
Fix from $1,950 2006-08-23
Solaris MEDIUM 5.4
CVE-2006-4117

The squeue_drain function in Sun Solaris 10, possibly only when run on CMT processors, allows remote attackers to cause a denial of service ("bad tra…

Mitigation only
Fix from $1,600 2006-08-14
Solaris HIGH 7.8
CVE-2006-3781

Unspecified vulnerability in Sun Solaris 10 allows context-dependent attackers to cause a denial of service (panic) via unspecified vectors involving…

No fix yet
Fix from $1,950 2006-07-24
Java Enterprise System HIGH 7.8
CVE-2006-3127

Memory leak in Network Security Services (NSS) 3.11, as used in Sun Java Enterprise System 2003Q4 through 2005Q1 and Java System Directory Server 5.2…

Mitigation only
Fix from $1,950 2006-06-21
Jdk MEDIUM 6.4
CVE-2006-2426EPSS 13%

Sun Java Runtime Environment (JRE) 1.5.0_6 and earlier, JDK 1.5.0_6 and earlier, and SDK 1.5.0_6 and earlier allows remote attackers to cause a denia…

No fix yet
Fix from $1,600 2006-05-17
Java System Directory Server MEDIUM 5.0
CVE-2006-0647EPSS 10%

LDAP service in Sun Java System Directory Server 5.2, running on Linux and possibly other platforms, allows remote attackers to cause a denial of ser…

No fix yet
Fix from $1,600 2006-02-13
Java HIGH 10.0
CVE-2005-2529

Unspecified vulnerability in Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X allows local users to gain privileges via unspecified attack vectors…

Mitigation only
Fix from $1,950 2005-12-31
Java HIGH 10.0
CVE-2005-2530

Unspecified vulnerability in Java 1.3.1 before 1.3.1_16 on Apple Mac OS X allows an untrusted applet to gain privileges, related to "Mac OS X specifi…

Mitigation only
Fix from $1,950 2005-12-31
Javamail MEDIUM 5.0
CVE-2005-1753

ReadMessage.jsp in JavaMail API 1.1.3 through 1.3, as used by Apache Tomcat 5.0.16, allows remote attackers to view other users' e-mail attachments v…

Mitigation only
Fix from $1,600 2005-12-31
Java MEDIUM 5.0
CVE-2005-2738

Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X does not prevent multiple programs from opening the same port as a Java ServerSocket, which allow…

Mitigation only
Fix from $1,600 2005-12-31
Java Plug In MEDIUM 5.0
CVE-2005-4845

The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remote attackers to cause a denial…

Mitigation only
Fix from $1,600 2005-12-31
Wbem Services HIGH 7.8
CVE-2005-4350

Unspecified vulnerability in WBEM Services A.01.x before A.01.05.12 and A.02.x before A.02.00.08 on HP-UX B.11.00 through B.11.23 allows remote attac…

Mitigation only
Fix from $1,950 2005-12-20
Solaris HIGH 7.8
CVE-2005-3674

The Internet Key Exchange version 1 (IKEv1) implementation in the libike library in Sun Solaris 9 and 10 allows remote attackers to cause a denial of…

Mitigation only
Fix from $1,950 2005-11-18
Jre HIGH 7.8
CVE-2005-3583

(1) Java Runtime Environment (JRE) and (2) Software Development Kit (SDK) 1.4.2_08, 1.4.2_09, and 1.5.0_05 and possibly other versions allow remote a…

Mitigation only
Fix from $1,950 2005-11-16
Solaris HIGH 7.5
CVE-2005-2870

Unknown vulnerability in the net-svc script on Solaris 10 allows remote authenticated users to execute arbitrary code on a DHCP client via certain DH…

Mitigation only
Fix from $1,950 2005-09-08
Solaris HIGH 7.2
CVE-2005-2072

The runtime linker (ld.so) in Solaris 8, 9, and 10 trusts the LD_AUDIT environment variable in setuid or setgid programs, which allows local users to…

No fix yet
Fix from $1,950 2005-06-29
J2se MEDIUM 5.1
CVE-2005-1973

Java Web Start in Java 2 Platform Standard Edition (J2SE) 5.0 and 5.0 Update 1 allows applications to assign permissions to themselves and gain privi…

Mitigation only
Fix from $1,600 2005-06-16
J2se MEDIUM 5.1
CVE-2005-1974

Unspecified vulnerability in Java 2 Platform, Standard Edition (J2SE) 5.0 and 5.0 Update 1 and J2SE 1.4.2 up to 1.4.2_07, as used in multiple product…

Mitigation only
Fix from $1,600 2005-06-16
Storedge 6130 Arrays HIGH 7.5
CVE-2005-1609

Unknown vulnerability in Sun StorEdge 6130 Arrays (SE6130) with serial numbers between 0451AWF00G and 0513AWF00J allows local users and remote attack…

No fix yet
Fix from $1,950 2005-05-16