Vulnerability index

Browse CVEs

713 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Java Runtime Environment HIGH 7.5
CVE-2009-1099EPSS 6%

Integer signedness error in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier, and 6 Update 12 and earlier, …

Patch available
Fix from $1,950 2009-03-25
Java HIGH 7.5
CVE-2009-1105

The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 allows user-assisted remote attackers to…

Patch available
Fix from $1,950 2009-03-25
Java MEDIUM 6.4
CVE-2009-1102

Unspecified vulnerability in the Virtual Machine in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12 and earlier allows r…

Patch available
Fix from $1,600 2009-03-25
Java MEDIUM 6.4
CVE-2009-1103

Unspecified vulnerability in the Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier; 6 Update…

Patch available
Fix from $1,600 2009-03-25
Java MEDIUM 5.8
CVE-2009-1104

The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier; 6 Update 12 and earlier; and 1.4.2_19…

Patch available
Fix from $1,600 2009-03-25
Jdk MEDIUM 5.0
CVE-2009-1093

LdapCtx in the LDAP service in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier; 6 Update 12 and earlier; S…

Fix: after 1.6.0
Fix from $1,600 2009-03-25
Java System Identity Manager HIGH 9.0
CVE-2009-1082

Sun Java System Identity Manager (IdM) 7.0 through 8.0 allows remote authenticated users to gain privileges by submitting crafted commands to the Adm…

Patch available
Fix from $1,950 2009-03-25
Java System Identity Manager HIGH 9.0
CVE-2009-1083

Sun Java System Identity Manager (IdM) 7.0 through 8.0 on Linux, AIX, Solaris, and HP-UX permits "control characters" in the passwords of user accoun…

Patch available
Fix from $1,950 2009-03-25
Java System Identity Manager MEDIUM 6.5
CVE-2009-1077

The Change My Password implementation in the admin interface in Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not enforce the RequiresC…

Patch available
Fix from $1,600 2009-03-25
Java System Identity Manager MEDIUM 6.4
CVE-2009-1084

Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not properly restrict access to the System Configuration object, which allows remote auth…

Patch available
Fix from $1,600 2009-03-25
Java System Identity Manager MEDIUM 5.0
CVE-2009-1074

Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not use SSL in all expected circumstances, which makes it easier for remote attackers to …

Patch available
Fix from $1,600 2009-03-25
Java System Identity Manager MEDIUM 5.0
CVE-2009-1075

Sun Java System Identity Manager (IdM) 7.0 through 8.0 responds differently to failed use of the Forgot Password feature depending on whether the use…

Patch available
Fix from $1,600 2009-03-25
Java System Identity Manager MEDIUM 5.0
CVE-2009-1076

Sun Java System Identity Manager (IdM) 7.0 through 8.0 responds differently to failed use of the end-user question-based login feature depending on w…

Patch available
Fix from $1,600 2009-03-25
Opensolaris HIGH 7.8
CVE-2009-0923

Unspecified vulnerability in Kerberos Incremental Propagation in Solaris 10 and OpenSolaris snv_01 through snv_110 allows remote attackers to cause a…

Mitigation only
Fix from $1,950 2009-03-17
Opensolaris MEDIUM 6.9
CVE-2009-0875

Race condition in the Doors subsystem in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_94, allows local users to cause a denial …

Patch available
Fix from $1,600 2009-03-12
Xvm Virtualbox MEDIUM 6.9
CVE-2009-0876

Sun xVM VirtualBox 2.0.0, 2.0.2, 2.0.4, 2.0.6r39760, 2.1.0, 2.1.2, and 2.1.4r42893 on Linux allows local users to gain privileges via a hardlink atta…

Patch available
Fix from $1,600 2009-03-12
Opensolaris MEDIUM 6.8
CVE-2009-0872

The NFS server in Sun Solaris 10, and OpenSolaris before snv_111, does not properly implement the AUTH_NONE (aka sec=none) security mode in combinati…

Patch available
Fix from $1,600 2009-03-11
Opensolaris MEDIUM 6.8
CVE-2009-0873

The NFS daemon (aka nfsd) in Sun Solaris 10 and OpenSolaris before snv_106, when NFSv3 is used, does not properly implement combinations of security …

Patch available
Fix from $1,600 2009-03-11
Java System Directory Server HIGH 7.8
CVE-2009-0609

Sun Java System Directory Proxy Server in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3, when a JDBC data source is used, does …

Patch available
Fix from $1,950 2009-02-17
Java System Directory Server HIGH 7.8
CVE-2009-0576

Unspecified vulnerability in Sun Java System Directory Server 5.2 p6 and earlier, and Enterprise Edition 5, allows remote attackers to cause a denial…

Fix: after 5.2
Fix from $1,950 2009-02-13
Opensolaris HIGH 7.2
CVE-2009-0477

Unspecified vulnerability in the process (aka proc) filesystem in Sun OpenSolaris snv_85 through snv_100 allows local users to gain privileges via ve…

No fix yet
Fix from $1,950 2009-02-08
Opensolaris MEDIUM 5.4
CVE-2008-6024

Unspecified vulnerability in the NFSv4 client module in the kernel on Sun Solaris 10 and OpenSolaris before snv_37, when automountd is used, allows u…

Patch available
Fix from $1,600 2009-02-02
Fire X2100 M2 HIGH 10.0
CVE-2009-0344

Unspecified vulnerability in the Embedded Lights Out Manager (ELOM) on the Sun Fire X2100 M2 and X2200 M2 x86 platforms before SP/BMC firmware 3.20 a…

Fix: after 3.19
Fix from $1,950 2009-01-29
Fire X2100 M2 HIGH 10.0
CVE-2009-0345

Unspecified vulnerability in the Embedded Lights Out Manager (ELOM) on the Sun Fire X2100 M2 and X2200 M2 x86 platforms before SP/BMC firmware 3.20 a…

Fix: after 3.19
Fix from $1,950 2009-01-29
Java System Access Manager MEDIUM 5.0
CVE-2009-0348EPSS 8%

The login module in Sun Java System Access Manager 6 2005Q1 (aka 6.3), 7 2005Q4 (aka 7.0), and 7.1 responds differently to a failed login attempt dep…

Patch available
Fix from $1,600 2009-01-29
Opensolaris MEDIUM 6.9
CVE-2009-0319

Unspecified vulnerability in the autofs module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_108, allows local users to cause…

Patch available
Fix from $1,600 2009-01-28
Opensolaris HIGH 7.8
CVE-2009-0304EPSS 10%

The kernel in Sun Solaris 10 and 11 snv_101b, and OpenSolaris before snv_108, allows remote attackers to cause a denial of service (system crash) via…

No fix yet
Fix from $1,950 2009-01-27
Java System Application Server MEDIUM 5.0
CVE-2009-0278

Sun Java System Application Server (AS) 8.1 and 8.2 allows remote attackers to read the Web Application configuration files in the (1) WEB-INF or (2)…

Patch available
Fix from $1,600 2009-01-27
Opensolaris HIGH 7.8
CVE-2009-0277

Unspecified vulnerability in the kernel in OpenSolaris snv_100 through snv_102 on the Sun UltraSPARC T2 and T2+ sun4v platforms allows local users to…

Patch available
Fix from $1,950 2009-01-27
Opensolaris MEDIUM 5.0
CVE-2009-0267

libike in Sun Solaris 9 and 10, and OpenSolaris before snv_100, does not properly check packets, which allows remote attackers to cause a denial of s…

Patch available
Fix from $1,600 2009-01-26