Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Java Web Console HIGH 7.8
CVE-2008-1286

Unspecified vulnerability in Sun Java Web Console 3.0.2, 3.0.3, and 3.0.4 allows remote attackers to bypass intended access restrictions and determin…

Patch available
Fix from $1,950 2008-03-11
Jdk HIGH 9.3
CVE-2008-1185EPSS 6%

Unspecified vulnerability in the Virtual Machine for Sun Java Runtime Environment (JRE) and JDK 6 Update 4 and earlier, 5.0 Update 14 and earlier, an…

Patch available
Fix from $1,950 2008-03-06
Jdk HIGH 9.3
CVE-2008-1186EPSS 6%

Unspecified vulnerability in the Virtual Machine for Sun Java Runtime Environment (JRE) and JDK 5.0 Update 13 and earlier, and SDK/JRE 1.4.2_16 and e…

Patch available
Fix from $1,950 2008-03-06
Jdk HIGH 9.3
CVE-2008-1190EPSS 17%

Unspecified vulnerability in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, 5.0 Update 14 and earlier, and SDK/JRE 1.4.2_16 and earlier al…

Mitigation only
Fix from $1,950 2008-03-06
Jdk MEDIUM 6.8
CVE-2008-1187EPSS 5%

Unspecified vulnerability in Sun Java Runtime Environment (JRE) and JDK 6 Update 4 and earlier, 5.0 Update 14 and earlier, and SDK/JRE 1.4.2_16 and e…

Fix: after 6
Fix from $1,600 2008-03-06
Jdk MEDIUM 6.8
CVE-2008-1189EPSS 7%

Buffer overflow in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, 5.0 Update 14 and earlier, and SDK/JRE 1.4.2_16 and earlier allows remot…

Patch available
Fix from $1,600 2008-03-06
Jdk MEDIUM 6.8
CVE-2008-1192

Unspecified vulnerability in the Java Plug-in for Sun JDK and JRE 6 Update 4 and earlier, and 5.0 Update 14 and earlier; and SDK and JRE 1.4.2_16 and…

Patch available
Fix from $1,600 2008-03-06
Jdk MEDIUM 6.8
CVE-2008-1196EPSS 7%

Stack-based buffer overflow in Java Web Start (javaws.exe) in Sun JDK and JRE 6 Update 4 and earlier and 5.0 Update 14 and earlier; and SDK and JRE 1…

Patch available
Fix from $1,600 2008-03-06
Solaris MEDIUM 6.8
CVE-2008-1095

Unspecified vulnerability in the Internet Protocol (IP) implementation in Sun Solaris 8, 9, and 10 allows remote attackers to bypass intended firewal…

Patch available
Fix from $1,600 2008-02-29
Solaris Libfont HIGH 7.5
CVE-2008-0006EPSS 5%

Buffer overflow in (1) X.Org Xserver before 1.4.1, and (2) the libfont and libXfont libraries on some platforms including Sun Solaris, allows context…

Fix: after 1.4
Fix from $1,950 2008-01-18
Solaris HIGH 7.2
CVE-2008-0242

Unspecified vulnerability in libdevinfo in Sun Solaris 10 allows local users to access files and gain privileges via unknown vectors, related to logi…

Mitigation only
Fix from $1,950 2008-01-12
Java System Identity Manager MEDIUM 5.8
CVE-2008-0241

Open redirect vulnerability in /idm/user/login.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to r…

Patch available
Fix from $1,600 2008-01-11
Management\+center HIGH 9.4
CVE-2007-6480

The Oracle database component in Sun Management Center (Sun MC) 3.6.1, 3.6, and 3.5 Update 1 has a default account, which allows remote attackers to …

Patch available
Fix from $1,950 2007-12-20
Ray Server Software HIGH 7.8
CVE-2007-6482

Unspecified vulnerability in the Device Manager daemon (utdevmgrd) in Sun Ray Server Software 2.0, 3.0, 3.1, and 3.1.1 allows remote attackers to cau…

Patch available
Fix from $1,950 2007-12-20
Ray Server Software MEDIUM 6.4
CVE-2007-6481

Unspecified vulnerability in the Device Manager daemon (utdevmgrd) in Sun Ray Server Software 2.0, 3.0, 3.1, and 3.1.1 allows remote attackers to cre…

Patch available
Fix from $1,600 2007-12-20
Solaris HIGH 9.3
CVE-2007-6413

Sun Solaris 10 with the 120011-04 and 120012-04 patches, and later 120011-* and 120012-* patches, allows remote attackers to bypass certain netgroup …

Patch available
Fix from $1,950 2007-12-17
Extended System Control Facility Xcp 1040 HIGH 7.8
CVE-2007-6360

Unspecified vulnerability in the Sun eXtended System Control Facility (XSCF) Control Package (XCP) firmware before 1050 on SPARC Enterprise M4000, M5…

Patch available
Fix from $1,950 2007-12-15
Solaris HIGH 7.6
CVE-2007-6180

Race condition in the Remote Procedure Call kernel module (rpcmod) in Sun Solaris 8 through 10 allows local users to cause a denial of service (NULL …

Patch available
Fix from $1,950 2007-11-30
Javamail MEDIUM 5.0
CVE-2007-6059

Javamail does not properly handle a series of invalid login attempts in which the same e-mail address is entered as username and password, and the do…

No fix yet
Fix from $1,600 2007-11-20
Net Connect Software HIGH 7.2
CVE-2007-3880

Format string vulnerability in srsexec in Sun Remote Services (SRS) Net Connect 3.2.3 and 3.2.4, as distributed in the SRS Proxy Core (SUNWsrspx) pac…

Patch available
Fix from $1,950 2007-11-14
Embedded Lights Out Manager HIGH 10.0
CVE-2007-5717

Unspecified vulnerability in Sun Fire X2100 M2 and X2200 M2 Embedded Lights Out Manager (ELOM) on x86 before firmware 2.70 allows remote attackers to…

Patch available
Fix from $1,950 2007-10-30
Solaris HIGH 7.8
CVE-2007-5716

Unspecified vulnerability in the Internet Protocol (IP) functionality in Sun Solaris 10 allows local users to cause a denial of service (panic) via u…

Patch available
Fix from $1,950 2007-10-30
Solaris MEDIUM 6.8
CVE-2007-5726

Unspecified vulnerability in the Stream Control Transmission Protocol (sctp) functionality in Sun Solaris 10, when at least one SCTP socket is in the…

Patch available
Fix from $1,600 2007-10-30
Jdk HIGH 10.0
CVE-2007-5689

The Java Virtual Machine (JVM) in Sun Java Runtime Environment (JRE) in SDK and JRE 1.3.x through 1.3.1_20 and 1.4.x through 1.4.2_15, and JDK and JR…

Fix: after 1.6.0
Fix from $1,950 2007-10-29
Storagetek 3510 MEDIUM 6.4
CVE-2007-5482

Unspecified vulnerability in the FTP service in Sun StorEdge/StorageTek 3510 FC Array with firmware before 4.21 allows remote attackers, with access …

Mitigation only
Fix from $1,600 2007-10-16
Solaris HIGH 7.8
CVE-2007-5462

Unspecified vulnerability in the Sun Solaris RPC services library (librpcsvc) on Solaris 8 through 10 allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2007-10-15
Jdk MEDIUM 5.4
CVE-2007-5236

Java Web Start in Sun JDK and JRE 5.0 Update 12 and earlier, and SDK and JRE 1.4.2_15 and earlier, on Windows does not properly enforce access restri…

Patch available
Fix from $1,600 2007-10-06
Jdk MEDIUM 5.0
CVE-2007-5240

Visual truncation vulnerability in the Java Runtime Environment in Sun JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK…

Patch available
Fix from $1,600 2007-10-06
Embedded Lights Out Manager MEDIUM 5.0
CVE-2007-5170

Unspecified vulnerability in the embedded service processor (SP) before 3.09 in Sun Fire X2100 M2 and X2200 M2 Embedded Lights Out Manager (ELOM) all…

Patch available
Fix from $1,600 2007-10-01
Java System Access Manager HIGH 7.5
CVE-2007-5152

Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 9.1 container, does not demand authentication after a cont…

Mitigation only
Fix from $1,950 2007-10-01