Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2013-10-22 CVE-2013-5446 Security vulnerability in IBM products
The console on IBM WebSphere DataPower XC10 appliances 2.1.0 and 2.5.0 does not properly process logoff actions, which has unspecified impact and remote attack vectors.
network
low complexity
ibm
critical
10.0
2013-10-19 CVE-2013-6021 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Watchguard Fireware
Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code via a long sessionid value in a cookie.
network
watchguard CWE-119
critical
9.3
2013-10-16 CVE-2013-5850 Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2013-5842.
network
sun oracle
critical
9.3
2013-10-16 CVE-2013-5846 Unspecified vulnerability in Oracle Javafx, JDK and JRE
Unspecified vulnerability in Oracle Java SE 7u40 and earlier, and JavaFX 2.2.40 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX.
network
oracle
critical
9.3
2013-10-16 CVE-2013-5844 Unspecified vulnerability in Oracle Javafx, JDK and JRE
Unspecified vulnerability in Oracle Java SE 7u40 and earlier and JavaFX 2.2.40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX.
network
oracle
critical
9.3
2013-10-16 CVE-2013-5838 Remote Security vulnerability in Oracle JDK and JRE
Unspecified vulnerability in Oracle Java SE 7u25 and earlier, and Java SE Embedded 7u25 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.
network
oracle
critical
9.3
2013-10-16 CVE-2013-5832 Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5787, CVE-2013-5789, CVE-2013-5824, and CVE-2013-5852.
network
oracle sun
critical
9.3
2013-10-16 CVE-2013-5824 Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5787, CVE-2013-5789, CVE-2013-5832, and CVE-2013-5852.
network
low complexity
oracle sun
critical
10.0
2013-10-16 CVE-2013-5817 Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JNDI.
network
low complexity
sun oracle
critical
10.0
2013-10-16 CVE-2013-5814 Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA.
network
low complexity
sun oracle
critical
10.0