Show filters
295 Total Results
Displaying 211-220 of 295
Sort by:
Attacker Value
Unknown
CVE-2009-1219
Disclosure Date: April 01, 2009 (last updated October 04, 2023)
Sun Calendar Express Web Server in Sun ONE Calendar Server 6.0 and Sun Java System Calendar Server 6 2004Q2 through 6.3-7.01 allows remote attackers to cause a denial of service (daemon crash) via multiple requests to the default URI with alphabetic characters in the tzid parameter.
0
Attacker Value
Unknown
CVE-2009-1099
Disclosure Date: March 25, 2009 (last updated October 04, 2023)
Integer signedness error in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier, and 6 Update 12 and earlier, allows remote attackers to access files or execute arbitrary code via crafted glyph descriptions in a Type1 font, which bypasses a signed comparison and triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2008-6192
Disclosure Date: February 19, 2009 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in unspecified Portlets in Sun Java System Portal Server 7.0 and 7.1 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.
0
Attacker Value
Unknown
CVE-2009-0609
Disclosure Date: February 17, 2009 (last updated October 04, 2023)
Sun Java System Directory Proxy Server in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3, when a JDBC data source is used, does not properly handle (1) a long value in an ADD or (2) long string attributes, which allows remote attackers to cause a denial of service (JDBC backend outage) via crafted LDAP requests.
0
Attacker Value
Unknown
CVE-2009-0576
Disclosure Date: February 13, 2009 (last updated October 04, 2023)
Unspecified vulnerability in Sun Java System Directory Server 5.2 p6 and earlier, and Enterprise Edition 5, allows remote attackers to cause a denial of service (daemon crash) via crafted LDAP requests.
0
Attacker Value
Unknown
CVE-2009-0278
Disclosure Date: January 27, 2009 (last updated October 04, 2023)
Sun Java System Application Server (AS) 8.1 and 8.2 allows remote attackers to read the Web Application configuration files in the (1) WEB-INF or (2) META-INF directory via a malformed request.
0
Attacker Value
Unknown
CVE-2008-5549
Disclosure Date: December 12, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the Sun Java Web Console components in Sun Java System Portal Server 7.1 and 7.2 allows remote attackers to access local files and read the product's configuration information via unknown vectors related to "access to secure files by ThemeServlet."
0
Attacker Value
Unknown
CVE-2008-5266
Disclosure Date: November 28, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in configuration/httpListenerEdit.jsf in the GlassFish 2 UR2 b04 webadmin interface in Sun Java System Application Server 9.1_01 build b09d-fcs and 9.1_02 build b04-fcs allows remote attackers to inject arbitrary web script or HTML via the name parameter, a different vector than CVE-2008-2751.
0
Attacker Value
Unknown
CVE-2008-5098
Disclosure Date: November 17, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Sun Java System Messaging Server 6.2 and 6.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2007-2904.
0
Attacker Value
Unknown
CVE-2008-4541
Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in the FTP subsystem in Sun Java System Web Proxy Server 4.0 through 4.0.7 allows remote attackers to execute arbitrary code via a crafted HTTP GET request.
0