Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Java System Access Manager MEDIUM 6.8
CVE-2007-5153

Unspecified vulnerability in Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 8.x container, allows remote …

No fix yet
Fix from $1,600 2007-10-01
Java Web Start HIGH 10.0
CVE-2007-5019EPSS 10%

Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote attackers to have an unknown impact…

No fix yet
Fix from $1,950 2007-09-20
Java System Application Server MEDIUM 5.0
CVE-2007-4511

The Sun Admin Console in Sun Application Server 9.0_0.1 does not apply certain configuration changes persistently, which causes the (1) SSL and (2) S…

Mitigation only
Fix from $1,600 2007-08-23
Sunos HIGH 7.6
CVE-2007-4395

Multiple unspecified vulnerabilities in the Role Based Access Control (RBAC) functionality in Sun Solaris 8 allow remote attackers who know the passw…

Patch available
Fix from $1,950 2007-08-17
Jdk HIGH 9.3
CVE-2007-4381EPSS 5%

Unspecified vulnerability in the font parsing implementation in Sun JDK and JRE 5.0 Update 9 and earlier, and SDK and JRE 1.4.2_14 and earlier, allow…

Fix: after 1.5.0
Fix from $1,950 2007-08-17
Java System Portal Server MEDIUM 6.8
CVE-2007-4289

Sun Java System Portal Server 7.0 does not properly process XSLT stylesheets in XSLT transforms in XML signatures, which allows context-dependent att…

Patch available
Fix from $1,600 2007-08-09
Jdk MEDIUM 6.8
CVE-2007-3922

Unspecified vulnerability in the Java Runtime Environment (JRE) Applet Class Loader in Sun JDK and JRE 5.0 Update 11 and earlier, 6 through 6 Update …

Fix: after 1.6.0
Fix from $1,600 2007-07-21
Sunos MEDIUM 6.9
CVE-2007-3717

rcp on Sun Solaris 8, 9, and 10 before 20070710 does not properly call certain helper applications, which allows local users to gain privileges by cr…

Patch available
Fix from $1,600 2007-07-12
Java System Application Server HIGH 9.3
CVE-2007-3715

Sun Java System Application Server and Web Server 7.0 through 9.0 before 20070710 do not properly process XSLT stylesheets in XSLT transforms in XML …

Patch available
Fix from $1,950 2007-07-11
Jdk HIGH 7.8
CVE-2007-3698

The Java Secure Socket Extension (JSSE) in Sun JDK and JRE 6 Update 1 and earlier, JDK and JRE 5.0 Updates 7 through 11, and SDK and JRE 1.4.2_11 thr…

Patch available
Fix from $1,950 2007-07-11
Jdk HIGH 9.3
CVE-2007-3504EPSS 6%

Directory traversal vulnerability in the PersistenceService in Sun Java Web Start in JDK and JRE 5.0 Update 11 and earlier, and Java Web Start in SDK…

Fix: after 1.5.0
Fix from $1,950 2007-06-30
Solaris HIGH 7.8
CVE-2007-3470

Multiple unspecified vulnerabilities in the KSSL kernel module in Sun Solaris 10, when configured with the KSSL proxy, allow remote attackers to caus…

Patch available
Fix from $1,950 2007-06-28
Solaris HIGH 7.2
CVE-2007-3471

Buffer overflow in the dtsession Common Desktop Environment (CDE) Session Manager in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary…

Patch available
Fix from $1,950 2007-06-28
Solaris MEDIUM 6.8
CVE-2007-3283

GNOME XScreenSaver in Sun Solaris 8 and 9 before 20070417, when root is logged into the console, does not automatically lock the screen after a sessi…

Patch available
Fix from $1,600 2007-06-19
Solaris HIGH 7.8
CVE-2007-3248

Unspecified vulnerability in Sun Solaris 10 before 20070614, when IPv6 interfaces are present but not configured for IPsec, allows remote attackers t…

Patch available
Fix from $1,950 2007-06-18
Solaris HIGH 7.8
CVE-2007-3223

Unspecified vulnerability in the NFS server in Sun Solaris 10 before 20070613 allows remote attackers to cause a denial of service (system crash) via…

Patch available
Fix from $1,950 2007-06-14
Java System Directory Server MEDIUM 6.4
CVE-2007-3225

Unspecified vulnerability in Sun Java System Directory Server (slapd) 6.0, and 5.2 with Patch 3 or 4, allows remote attackers to modify certain data …

Patch available
Fix from $1,600 2007-06-14
Java System Directory Server MEDIUM 5.0
CVE-2007-3224

Unspecified vulnerability in Sun ONE/Java System Directory Server (slapd) 6.0, and 5.x before 5.2 Patch 5, allows remote attackers to determine the e…

Patch available
Fix from $1,600 2007-06-14
Solaris HIGH 10.0
CVE-2007-3093

Unspecified vulnerability in the logging mechanism in Solaris Management Console (SMC) on Sun Solaris 8 through 10 before 20070605 allows remote atta…

Patch available
Fix from $1,950 2007-06-06
Solaris HIGH 9.0
CVE-2007-3094

Unspecified vulnerability in the authentication mechanism in Solaris Management Console (SMC) on Sun Solaris 8 through 10 before 20070605 allows remo…

Patch available
Fix from $1,950 2007-06-06
Solaris HIGH 7.8
CVE-2007-2989

The libike library in Sun Solaris 9 before 20070529 contains a logic error related to a certain pointer, which allows remote attackers to cause a den…

Patch available
Fix from $1,950 2007-06-01
Java Embedding Plugin MEDIUM 5.0
CVE-2007-2906

Java Embedding Plugin 0.9.6.1 allows remote attackers to cause a denial of service (browser crash) via a Thread subclass that calls super.run from it…

Patch available
Fix from $1,600 2007-05-30
Solaris MEDIUM 5.0
CVE-2007-2882

Unspecified vulnerability in the NFS client module in Sun Solaris 8 through 10 before 20070524, when operating as an NFS server, allows remote attack…

Patch available
Fix from $1,600 2007-05-30
Java System Web Proxy Server HIGH 10.0
CVE-2007-2881EPSS 26%

Multiple stack-based buffer overflows in the SOCKS proxy support (sockd) in Sun Java Web Proxy Server before 4.0.5 allow remote attackers to execute …

Fix: after 4.0.4
Fix from $1,950 2007-05-29
Jdk MEDIUM 6.8
CVE-2007-2788EPSS 18%

Integer overflow in the embedded ICC profile image parser in Sun Java Development Kit (JDK) before 1.5.0_11-b03 and 1.6.x before 1.6.0_01-b06, and Su…

Patch available
Fix from $1,600 2007-05-22
Solaris HIGH 7.2
CVE-2007-2529

Integer signedness error in the acl (facl) system call in Solaris 10 before 20070507 allows local users to cause a denial of service (kernel panic) a…

Patch available
Fix from $1,950 2007-05-09
Java System Directory Server HIGH 7.8
CVE-2007-2466

Unspecified vulnerability in the LDAP Software Development Kit (SDK) for C, as used in Sun Java System Directory Server 5.2 up to Patch 4 and Sun ONE…

Patch available
Fix from $1,950 2007-05-02
Java Enterprise System HIGH 10.0
CVE-2007-2435

Sun Java Web Start in JDK and JRE 5.0 Update 10 and earlier, and Java Web Start in SDK and JRE 1.4.2_13 and earlier, allows remote attackers to perfo…

Fix: after 5.0
Fix from $1,950 2007-05-02
Cluster MEDIUM 6.8
CVE-2007-2267

Unspecified vulnerability in Sun Cluster 3.1 and Solaris Cluster 3.2 before 20070424 allows remote authenticated users, operating from a different cl…

Mitigation only
Fix from $1,600 2007-04-25
Java Web Console HIGH 7.5
CVE-2007-1681

Format string vulnerability in libwebconsole_services.so in Sun Java Web Console 2.2.2 through 2.2.5 allows remote attackers to cause a denial of ser…

Mitigation only
Fix from $1,950 2007-04-19