Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

J2se MEDIUM 5.0
CVE-2006-4302

The Java Plug-in J2SE 1.3.0_02 through 5.0 Update 5, and Java Web Start 1.0 through 1.2 and J2SE 1.4.2 through 5.0 Update 5, allows remote attackers …

Patch available
Fix from $1,600 2006-08-23
Solaris MEDIUM 5.4
CVE-2006-4139

Race condition in Sun Solaris 10 allows attackers to cause a denial of service (system panic) via unspecified vectors related to ifconfig and either …

Patch available
Fix from $1,600 2006-08-14
Solaris MEDIUM 5.4
CVE-2006-4117

The squeue_drain function in Sun Solaris 10, possibly only when run on CMT processors, allows remote attackers to cause a denial of service ("bad tra…

Mitigation only
Fix from $1,600 2006-08-14
Solaris MEDIUM 5.0
CVE-2006-3968

The crypto provider in Sun Solaris 10 3/05 HW2 without patch 121236-01, when running on Sun Fire T2000 platforms, incorrectly verifies a DSA signatur…

Patch available
Fix from $1,600 2006-08-01
N1 Grid Engine HIGH 7.5
CVE-2006-3941

Unspecified vulnerability in the daemons for Sun N1 Grid Engine 5.3 and N1 Grid Engine 6.0 allows local users to cause a denial of service (grid serv…

Patch available
Fix from $1,950 2006-07-31
Solaris MEDIUM 5.0
CVE-2006-3920

The TCP implementation in Sun Solaris 8, 9, and 10 before 20060726 allows remote attackers to cause a denial of service (resource exhaustion) via a T…

Patch available
Fix from $1,600 2006-07-28
Solaris HIGH 7.8
CVE-2006-3781

Unspecified vulnerability in Sun Solaris 10 allows context-dependent attackers to cause a denial of service (panic) via unspecified vectors involving…

No fix yet
Fix from $1,950 2006-07-24
Solaris MEDIUM 6.8
CVE-2006-3728

Unspecified vulnerability in the kernel in Solaris 10 with patch 118822-29 (118844-29 on x86) and without patch 118833-11 (118855-08) allows remote a…

Patch available
Fix from $1,600 2006-07-21
Solaris MEDIUM 5.0
CVE-2006-3664

Unspecified vulnerability in NIS server on Sun Solaris 8, 9, and 10 allows local and remote attackers to cause a denial of service (ypserv hang) via …

Patch available
Fix from $1,600 2006-07-18
Solaris MEDIUM 5.0
CVE-2006-3606

Unspecified vulnerability in Sun Solaris X Inter Client Exchange library (libICE) on Solaris 8 and 9 allows context-dependent attackers to cause a de…

Patch available
Fix from $1,600 2006-07-18
Java Enterprise System HIGH 7.8
CVE-2006-3127

Memory leak in Network Security Services (NSS) 3.11, as used in Sun Java Enterprise System 2003Q4 through 2005Q1 and Java System Directory Server 5.2…

Mitigation only
Fix from $1,950 2006-06-21
Storage Automated Diagnostic Environment HIGH 7.2
CVE-2006-2790

A package component in Sun Storage Automated Diagnostic Environment (StorADE) 2.4 uses world-writable permissions for certain critical files and dire…

Patch available
Fix from $1,950 2006-06-02
Java System Directory Server HIGH 7.5
CVE-2006-2513

Unspecified vulnerability in the installation process in Sun Java System Directory Server 5.2 causes wrong user data to be written to a file created …

Patch available
Fix from $1,950 2006-05-22
Java System Application Server MEDIUM 6.8
CVE-2006-2501

Cross-site scripting (XSS) vulnerability in Sun ONE Web Server 6.0 SP9 and earlier, Java System Web Server 6.1 SP4 and earlier, Sun ONE Application S…

Fix: after 7.0
Fix from $1,600 2006-05-20
Jdk MEDIUM 6.4
CVE-2006-2426EPSS 13%

Sun Java Runtime Environment (JRE) 1.5.0_6 and earlier, JDK 1.5.0_6 and earlier, and SDK 1.5.0_6 and earlier allows remote attackers to cause a denia…

No fix yet
Fix from $1,600 2006-05-17
Grid Engine HIGH 7.2
CVE-2006-1506

Unspecified vulnerability in rsh in Sun Microsystems Sun Grid Engine 5.3 before 20060327 and N1 Grid Engine 6.0 before 20060327 allows local users to…

Patch available
Fix from $1,950 2006-03-30
Solaris HIGH 7.2
CVE-2006-0901

Unspecified vulnerability in the hsfs filesystem in Solaris 8, 9, and 10 allows unspecified attackers to cause a denial of service (panic) or execute…

Patch available
Fix from $1,950 2006-02-27
Solaris HIGH 7.2
CVE-2006-0769

Unspecified vulnerability in in.rexecd in Solaris 10 allows local users to gain privileges on Kerberos systems via unknown attack vectors.

Patch available
Fix from $1,950 2006-02-18
Java System Directory Server MEDIUM 5.0
CVE-2006-0647EPSS 10%

LDAP service in Sun Java System Directory Server 5.2, running on Linux and possibly other platforms, allows remote attackers to cause a denial of ser…

No fix yet
Fix from $1,600 2006-02-13
Jdk MEDIUM 6.4
CVE-2006-0614EPSS 5%

Unspecified vulnerability in Sun Java JDK and JRE 5.0 Update 3 and earlier, SDK and JRE 1.3.x through 1.3.1_16 and 1.4.x through 1.4.2_08 allows remo…

Fix: after 1.4.2_08
Fix from $1,600 2006-02-09
Java System Access Manager HIGH 7.2
CVE-2006-0531

Unspecified vulnerability in Sun Java System Access Manager 7.0 allows local users logged in as "root" to bypass authentication and gain top-level ad…

Patch available
Fix from $1,950 2006-02-04
Grid Engine HIGH 7.2
CVE-2006-0408

rsh utility in Sun Grid Engine (SGE) before 6.0u7_1 allows local users to gain privileges and execute arbitrary code via unspecified vectors, possibl…

Patch available
Fix from $1,950 2006-01-25
Solaris HIGH 7.2
CVE-2006-0190

Unspecified vulnerability in Sun Solaris 9 and 10 for the x86 platform allows local users to gain privileges or cause a denial of service (panic) via…

Patch available
Fix from $1,950 2006-01-13
Java HIGH 10.0
CVE-2005-2529

Unspecified vulnerability in Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X allows local users to gain privileges via unspecified attack vectors…

Mitigation only
Fix from $1,950 2005-12-31
Java HIGH 10.0
CVE-2005-2530

Unspecified vulnerability in Java 1.3.1 before 1.3.1_16 on Apple Mac OS X allows an untrusted applet to gain privileges, related to "Mac OS X specifi…

Mitigation only
Fix from $1,950 2005-12-31
Sunos HIGH 7.2
CVE-2005-4795

Unspecified vulnerability in the multi-language environment library (libmle) in Solaris 7 and 8, as shipped with the Japanese locale, allows local us…

Patch available
Fix from $1,950 2005-12-31
Javamail MEDIUM 5.0
CVE-2005-1753

ReadMessage.jsp in JavaMail API 1.1.3 through 1.3, as used by Apache Tomcat 5.0.16, allows remote attackers to view other users' e-mail attachments v…

Mitigation only
Fix from $1,600 2005-12-31
Java MEDIUM 5.0
CVE-2005-2738

Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X does not prevent multiple programs from opening the same port as a Java ServerSocket, which allow…

Mitigation only
Fix from $1,600 2005-12-31
Solaris MEDIUM 5.0
CVE-2005-4797EPSS 29%

Directory traversal vulnerability in printd line printer daemon (lpd) in Solaris 7 through 10 allows remote attackers to delete arbitrary files via "…

Patch available
Fix from $1,600 2005-12-31
Java System Application Server MEDIUM 5.0
CVE-2005-4804

Unspecified vulnerability in Sun Java System Application Server Platform Edition and Enterprise Edition 8.1 2005 Q1, and Platform Edition UR1, allows…

Patch available
Fix from $1,600 2005-12-31