Page 8 of 41 results (0.015 seconds)

CVSS: 5.0EPSS: 1%CPEs: 8EXPL: 0

Unknown vulnerability in Sun Java System Web Server 6.0 SP7 and earlier, when running on Windows systems, allows attackers to cause a denial of service (hang). • http://secunia.com/advisories/14961 http://sunsolve.sun.com/search/document.do?assetkey=1-26-57760-1 http://www.osvdb.org/15504 •

CVSS: 5.0EPSS: 2%CPEs: 13EXPL: 0

Unknown vulnerability in Sun Java System Web Server 6.0 SP7 and earlier and 6.1 SP1 and earlier, and Application Server 7 Update 4 and earlier, allows remote attackers to cause a denial of service (crash) via a malformed client certificate. • http://secunia.com/advisories/13072 http://sunsolve.sun.com/search/document.do?assetkey=1-26-101589-1 http://sunsolve.sun.com/search/document.do?assetkey=1-26-57669-1 http://www.osvdb.org/11383 http://www.securityfocus.com/bid/11593 https://exchange.xforce.ibmcloud.com/vulnerabilities/17941 •

CVSS: 7.5EPSS: 12%CPEs: 5EXPL: 0

Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary code via unknown vectors, possibly CONNECT requests. • http://secunia.com/advisories/13036 http://securitytracker.com/id?1012005 http://sunsolve.sun.com/search/document.do?assetkey=1-26-57606-1&searchclause=security http://www.auscert.org.au/render.html?it=4516 http://www.ciac.org/ciac/bulletins/p-027.shtml http://www.kb.cert.org/vuls/id/964401 http://www.osvdb.org/displayvuln.php?osvdb_id=11304 http://www.pentest.co.uk/documents/ptl-2004-06.html http://www.securityfocus.com/bid/11566 https://exchange.xforce.ibmcloud. •

CVSS: 7.5EPSS: 3%CPEs: 93EXPL: 0

Heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modified record length field in an SSLv2 client hello message. • http://marc.info/?l=bugtraq&m=109351293827731&w=2 http://www.securityfocus.com/bid/11015 http://xforce.iss.net/xforce/alerts/id/180 https://exchange.xforce.ibmcloud.com/vulnerabilities/16314 •

CVSS: 10.0EPSS: 0%CPEs: 4EXPL: 1

The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/197&type=0&nav=sec.sba http://www.securityfocus.com/bid/1600 http://www.securityfocus.com/templates/advisory.html?id=2542 https://exchange.xforce.ibmcloud.com/vulnerabilities/5135 •