Vulnerability index

Browse CVEs

224 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Java System Web Proxy Server HIGH 7.5
CVE-2005-1232

Buffer overflow in Sun Java System Web Proxy Server (aka Sun ONE Proxy Server) 3.6 SP6 allows remote attackers to execute arbitrary code via unknown …

Mitigation only
Fix from $1,950 2005-05-02
Solaris HIGH 7.2
CVE-2005-0816

Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.

Mitigation only
Fix from $1,950 2005-05-02
Rte MEDIUM 5.0
CVE-2005-0223

The Software Development Kit (SDK) and Run Time Environment (RTE) 1.4.1 and 1.4.2 for Tru64 UNIX allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,600 2005-05-02
Solaris MEDIUM 5.0
CVE-2005-0426

Unknown vulnerability in Solaris 8 and 9 allows remote attackers to cause a denial of service (panic) via "Heavy UDP Usage" that triggers a NULL dere…

Mitigation only
Fix from $1,600 2005-05-02
Sdk MEDIUM 5.0
CVE-2005-1080EPSS 6%

Directory traversal vulnerability in the Java Archive Tool (Jar) utility in J2SE SDK 1.4.2 and 1.5, and OpenJDK, allows remote attackers to create or…

No fix yet
Fix from $1,600 2005-05-02
Javamail MEDIUM 5.0
CVE-2005-1105EPSS 6%

Directory traversal vulnerability in the MimeBodyPart.getFileName method in JavaMail 1.3.2 allows remote attackers to write arbitrary files via a .. …

Mitigation only
Fix from $1,600 2005-05-02
Solaris MEDIUM 5.0
CVE-2004-0791EPSS 20%

Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a…

Mitigation only
Fix from $1,600 2005-04-12
Sunforum HIGH 7.5
CVE-2004-2758

Multiple unspecified vulnerabilities in the H.323 protocol implementation for Sun SunForum 3.2 and 3D 1.0 allow remote attackers to cause a denial of…

Mitigation only
Fix from $1,950 2004-12-31
Solaris HIGH 7.2
CVE-2003-1082

Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4705891, a different …

Mitigation only
Fix from $1,950 2003-12-31
Java Plug In MEDIUM 6.8
CVE-2003-1516

The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violat…

No fix yet
Fix from $1,600 2003-12-31
Java Plug In MEDIUM 6.4
CVE-2003-1521EPSS 6%

Sun Java Plug-In 1.4 through 1.4.2_02 allows remote attackers to repeatedly access the floppy drive via the createXmlDocument method in the org.apach…

No fix yet
Fix from $1,600 2003-12-31
Solaris HIGH 10.0
CVE-2003-0722EPSS 89%

The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attackers to spoof Solstice AdminSu…

Mitigation only
Fix from $1,950 2003-09-22
Solaris HIGH 7.2
CVE-2003-0609

Stack-based buffer overflow in the runtime linker, ld.so.1, on Solaris 2.6 through 9 allows local users to gain root privileges via a long LD_PRELOAD…

Mitigation only
Fix from $1,950 2003-08-27
Iplanet Directory Server MEDIUM 5.0
CVE-2003-0676

Directory traversal vulnerability in ViewLog for iPlanet Administration Server 5.1 (aka Sun ONE) allows remote attackers to read arbitrary files via …

Mitigation only
Fix from $1,600 2003-08-27
One Application Server HIGH 7.2
CVE-2003-0414

The installation of Sun ONE Application Server 7.0 for Windows 2000/XP creates a statefile with world-readable permissions, which allows local users …

Mitigation only
Fix from $1,950 2003-06-30
Solaris HIGH 7.2
CVE-2002-2197

Unknown vulnerability in Sun Solaris 8.0 allows local users to cause a denial of service (kernel panic) via a program that uses /dev/poll, triggering…

Mitigation only
Fix from $1,950 2002-12-31
Solaris MEDIUM 5.0
CVE-2002-1228

Unknown vulnerability in NFS on Solaris 2.5.1 through Solaris 9 allows an NFS client to cause a denial of service by killing the lockd daemon.

Mitigation only
Fix from $1,600 2002-10-28
I Runbook HIGH 10.0
CVE-2002-1034

none.php for SunPS iRunbook 2.5.2 allows remote attackers to read arbitrary files via an absolute pathname in the argument.

No fix yet
Fix from $1,950 2002-10-04
Sun Pci Ii Driver HIGH 7.5
CVE-2002-0994

SunPCi II VNC uses a weak authentication scheme, which allows remote attackers to obtain the VNC password by sniffing the random byte challenge, whic…

No fix yet
Fix from $1,950 2002-10-04
I Runbook MEDIUM 5.0
CVE-2002-1033

Directory traversal vulnerability in none.php for SunPS iRunbook 2.5.2 allows remote attackers to read arbitrary files via a "..:" sequence (dot-dot …

No fix yet
Fix from $1,600 2002-10-04
Solaris HIGH 10.0
CVE-2002-0436EPSS 12%

sscd_suncourier.pl CGI script in the Sun Sunsolve CD pack allows remote attackers to execute arbitrary commands via shell metacharacters in the email…

Mitigation only
Fix from $1,950 2002-07-26
Solaris Answerbook2 HIGH 7.5
CVE-2002-0360

Buffer overflow in Sun AnswerBook2 1.4 through 1.4.3 allows remote attackers to execute arbitrary code via a long filename argument to the gettransbi…

Mitigation only
Fix from $1,950 2002-06-25
Solaris HIGH 7.5
CVE-2001-1414

The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access, which allows remote attackers to hide their activ…

Mitigation only
Fix from $1,950 2001-10-09
Sunos HIGH 7.2
CVE-2001-0699

Buffer overflow in cb_reset in the System Service Processor (SSP) package of SunOS 5.8 allows a local user to execute arbitrary code via a long argum…

Mitigation only
Fix from $1,950 2001-09-20
Solaris HIGH 7.2
CVE-2001-0426

Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via a long LANG environmental va…

No fix yet
Fix from $1,950 2001-07-02
Sunos HIGH 7.2
CVE-2001-0470

Buffer overflow in SNMP proxy agent snmpd in Solaris 8 may allow local users to gain root privileges by calling snmpd with a long program name.

Mitigation only
Fix from $1,950 2001-06-27
Javaserver Web Dev Kit MEDIUM 5.0
CVE-2001-0404

Directory traversal vulnerability in JavaServer Web Dev Kit (JSWDK) 1.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in an HT…

Mitigation only
Fix from $1,600 2001-06-18
Solaris HIGH 7.2
CVE-2001-0165

Buffer overflow in ximp40 shared library in Solaris 7 and Solaris 8 allows local users to gain privileges via a long "arg0" (process name) argument.

No fix yet
Fix from $1,950 2001-05-03
Sun Ftp MEDIUM 6.4
CVE-2001-0283EPSS 6%

Directory traversal vulnerability in SunFTP build 9 allows remote attackers to read arbitrary files via .. (dot dot) characters in various commands, …

No fix yet
Fix from $1,600 2001-05-03
Sunos MEDIUM 6.2
CVE-2001-0059

patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.

Mitigation only
Fix from $1,600 2001-02-12