11 results (0.005 seconds)

CVSS: 8.1EPSS: 94%CPEs: 3EXPL: 10

12 Dec 2017 — Embedthis GoAhead before 3.6.5 allows remote code execution if CGI is enabled and a CGI program is dynamically linked. This is a result of initializing the environment of forked CGI scripts using untrusted HTTP request parameters in the cgiHandler function in cgi.c. When combined with the glibc dynamic linker, this behaviour can be abused for remote code execution using special parameter names such as LD_PRELOAD. An attacker can POST their shared object payload in the body of the request, and reference it u... • https://packetstorm.news/files/id/146061 •

CVSS: 8.3EPSS: 0%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a atacantes remotos afectar la confidencialidad, la integridad y la disponibilidad a través de vectores desconocidos. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Infrastructure. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a atacantes remotos afectar la confidencialidad, la integridad y la disponibilidad a través de vectores relacionados con Infrastructure. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •

CVSS: 7.6EPSS: 0%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a usuarios remotos autenticados afectar la confidencialidad, integridad y disponibilidad a través de vectores desconocidos. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •

CVSS: 6.5EPSS: 0%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect integrity and availability via vectors related to SNMP. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a atacantes remotos afectar la integridad y disponibilidad a través de vectores relacionados con SNMP. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •

CVSS: 7.4EPSS: 0%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect confidentiality and integrity via vectors related to Emulex. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a atacantes remotos afectar la confidencialidad e integridad a través de vectores relacionados con Emulex. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •

CVSS: 7.5EPSS: 1%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect availability via vectors related to Console Redirection. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a atacantes remotos afectar la disponibilidad a través de vectores relacionados con Console Redirection. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •

CVSS: 9.8EPSS: 1%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to IPMI. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a atacantes remotos afectar la confidencialidad, la integridad y la disponibilidad a través de vectores relacionados con IPMI. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •

CVSS: 9.0EPSS: 1%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to LUMAIN. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a usuarios remotos autenticados afectar la confidencialidad, la integridad y la disponibilidad a través de vectores relacionados con LUMAIN. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •

CVSS: 4.7EPSS: 0%CPEs: 3EXPL: 0

21 Jul 2016 — Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect integrity via vectors related to Web. Vulnerabilidad no especificada en el componente ILOM en Oracle Sun Systems Products Suite 3.0, 3.1 y 3.2 permite a atacantes remotos afectar la integridad a través de vectores relacionados con Web. • http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html •