Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
2010-10-19 CVE-2010-3548 Remote JNDI vulnerability in SUN Jdk, JRE and SDK
Unspecified vulnerability in the Java Naming and Directory Interface (JNDI) component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, and 1.4.2_27 allows remote attackers to affect confidentiality via unknown vectors.
network
low complexity
sun
5.0
2010-10-19 CVE-2010-3541 Remote Networking vulnerability in SUN Jdk, JRE and SDK
Unspecified vulnerability in the Networking component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, 1.4.2_27, and 1.3.1_28 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
high complexity
sun
5.1
2010-04-21 CVE-2009-4777 Products GIF File Parsing Denial of Service vulnerability in Hitachi
Unspecified vulnerability in multiple versions of Hitachi JP1/Automatic Job Management System 2 - View, JP1/Integrated Management - View, and JP1/Cm2/SNMP System Observer, allows remote attackers to cause a denial of service ("abnormal" termination) via vectors related to the display of an "invalid GIF file."
4.3
2010-04-21 CVE-2009-4774 Local Denial Of Service vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in Sun Solaris 10 and OpenSolaris snv_49 through snv_117, when 64bit mode is used on the Intel x86 platform and a Linux (lx) branded zone is configured, allows local users to cause a denial of service (panic) via unspecified vectors, a different vulnerability than CVE-2007-6225.
local
high complexity
sun
4.0
2010-04-20 CVE-2010-0887 Unspecified vulnerability in SUN Java 6
Unspecified vulnerability in the New Java Plug-in component in Oracle Java SE and Java for Business JDK and JRE 6 Update 18 and 19 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun
critical
10.0
2010-04-20 CVE-2010-0886 Unspecified vulnerability in SUN JDK and JRE
Unspecified vulnerability in the Java Deployment Toolkit component in Oracle Java SE and Java for Business JDK and JRE 6 Update 10 through 19 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun microsoft
critical
10.0
2010-04-01 CVE-2010-1227 Cross-Site Scripting vulnerability in SUN Java System Communications Express
Cross-site scripting (XSS) vulnerability in Sun Java System Communications Express 6.2 and 6.3 allows remote attackers to inject arbitrary web script or HTML via the subject field of a message, as demonstrated by a subject containing an IMG element with a SRC attribute that performs a cross-site request forgery (CSRF) attack involving the cmd and argv parameters to cmd.msc.
network
sun CWE-79
4.3
2010-04-01 CVE-2010-0850 Remote Java 2D vulnerability in SUN Jdk, JRE and SDK
Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun
7.5
2010-04-01 CVE-2010-0849 Unspecified vulnerability in SUN Jdk, JRE and SDK
Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun
7.5
2010-04-01 CVE-2010-0848 Remote Java 2D vulnerability in SUN Jdk, JRE and SDK
Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun
7.5