Show filters
165 Total Results
Displaying 151-160 of 165
Sort by:
Attacker Value
Unknown
CVE-2011-3544
Disclosure Date: October 19, 2011 (last updated July 25, 2024)
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Scripting.
0
Attacker Value
Unknown
CVE-2009-4139
Disclosure Date: July 27, 2011 (last updated October 04, 2023)
Cross-site request forgery (CSRF) vulnerability in the Spacewalk Java site packages (aka spacewalk-java) 1.2.39 in Spacewalk, as used in the server in Red Hat Network Satellite 5.3.0 through 5.4.1 and other products, allows remote attackers to hijack the authentication of arbitrary users for requests that (1) disable the current user account, (2) add user accounts, or (3) modify user accounts to have administrator privileges.
0
Attacker Value
Unknown
CVE-2009-0788
Disclosure Date: April 18, 2011 (last updated October 04, 2023)
Red Hat Network (RHN) Satellite Server 5.3 and 5.4 does not properly rewrite unspecified URLs, which allows remote attackers to (1) obtain unspecified sensitive host information or (2) use the server as an inadvertent proxy to connect to arbitrary services and IP addresses via unspecified vectors.
0
Attacker Value
Unknown
CVE-2011-0717
Disclosure Date: February 25, 2011 (last updated October 04, 2023)
Session fixation vulnerability in Red Hat Network (RHN) Satellite Server 5.4 allows remote attackers to hijack web sessions via unspecified vectors related to Spacewalk.
0
Attacker Value
Unknown
CVE-2011-0718
Disclosure Date: February 25, 2011 (last updated October 04, 2023)
Red Hat Network (RHN) Satellite Server 5.4 does not use a time delay after a failed login attempt, which makes it easier for remote attackers to conduct brute force password guessing attacks.
0
Attacker Value
Unknown
CVE-2008-2527
Disclosure Date: June 03, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in view.php in ActualScripts ActualAnalyzer Server 8.37 and earlier, ActualAnalyzer Gold 7.74 and earlier, ActualAnalyzer Pro 6.95 and earlier, and ActualAnalyzer Lite 2.78 and earlier allows remote attackers to inject arbitrary web script or HTML via the language parameter.
0
Attacker Value
Unknown
CVE-2007-4646
Disclosure Date: August 31, 2007 (last updated October 04, 2023)
Buffer overflow in the pop3 service in Hexamail Server 3.0.0.001 Lite allows remote attackers to cause a denial of service (daemon crash) and probably execute arbitrary code via a long USER command.
0
Attacker Value
Unknown
CVE-2007-4132
Disclosure Date: August 30, 2007 (last updated October 04, 2023)
Unspecified vulnerability in Red Hat Network Satellite Server 5.0.0 allows remote authenticated users to execute arbitrary code via unknown vectors in a "back-end XMLRPC handler."
0
Attacker Value
Unknown
CVE-2007-1349
Disclosure Date: March 30, 2007 (last updated October 04, 2023)
PerlRun.pm in Apache mod_perl before 1.30, and RegistryCooker.pm in mod_perl 2.x, does not properly escape PATH_INFO before use in a regular expression, which allows remote attackers to cause a denial of service (resource consumption) via a crafted URI.
0
Attacker Value
Unknown
CVE-2005-3641
Disclosure Date: November 16, 2005 (last updated February 22, 2025)
Oracle Databases running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication by supplying a valid username.
0