Vulnerabilities > SUN > Critical

DATE CVE VULNERABILITY TITLE RISK
2010-10-19 CVE-2010-3554 Remote CORBA vulnerability in SUN Jdk, JRE and SDK
Unspecified vulnerability in the CORBA component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, 1.4.2_27, and 1.3.1_28 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun
critical
10.0
2010-10-19 CVE-2010-3553 Remote Swing vulnerability in SUN Jdk, JRE and SDK
Unspecified vulnerability in the Swing component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, 1.4.2_27, and 1.3.1_28 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun
critical
10.0
2010-10-19 CVE-2010-3552 Remote New Java Plug-in vulnerability in SUN JDK and JRE
Unspecified vulnerability in the New Java Plug-in component in Oracle Java SE and Java for Business 6 Update 21 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun
critical
10.0
2010-10-19 CVE-2010-3550 Remote Java Web Start vulnerability in SUN JDK and JRE
Unspecified vulnerability in the Java Web Start component in Oracle Java SE and Java for Business 6 Update 21 and 5.0 Update 25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
sun
critical
9.3
2010-04-20 CVE-2010-0887 Unspecified vulnerability in SUN Java 6
Unspecified vulnerability in the New Java Plug-in component in Oracle Java SE and Java for Business JDK and JRE 6 Update 18 and 19 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun
critical
10.0
2010-04-20 CVE-2010-0886 Unspecified vulnerability in SUN JDK and JRE
Unspecified vulnerability in the Java Deployment Toolkit component in Oracle Java SE and Java for Business JDK and JRE 6 Update 10 through 19 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
sun microsoft
critical
10.0
2010-02-09 CVE-2010-0444 Credentials Management vulnerability in HP Operations Agent 8.51/8.52/8.53
HP Operations Agent 8.51, 8.52, 8.53, and 8.60 on Solaris 10 uses a blank password for the opc_op account, which allows remote attackers to execute arbitrary code via unspecified vectors.
network
low complexity
hp sun CWE-255
critical
10.0
2010-01-28 CVE-2003-1576 Buffer Errors vulnerability in SUN Change Manager 1.0
Buffer overflow in pamverifier in Change Manager (CM) 1.0 for Sun Management Center (SunMC) 3.0 on Solaris 8 and 9 on the sparc platform allows remote attackers to execute arbitrary code via unspecified vectors.
network
low complexity
sun CWE-119
critical
10.0
2010-01-20 CVE-2010-0361 Buffer Errors vulnerability in SUN Java System web Server 7.0
Stack-based buffer overflow in the WebDAV implementation in webservd in Sun Java System Web Server (aka SJWS) 7.0 Update 7 allows remote attackers to cause a denial of service (daemon crash) and possibly have unspecified other impact via a long URI in an HTTP OPTIONS request.
network
low complexity
sun CWE-119
critical
10.0
2010-01-20 CVE-2010-0360 Improper Input Validation vulnerability in SUN Java System web Server 7.0
Sun Java System Web Server (aka SJWS) 7.0 Update 7 allows remote attackers to overwrite memory locations in the heap, and discover the contents of memory locations, via a malformed HTTP TRACE request that includes a long URI and many empty headers, related to an "overflow." NOTE: this might overlap CVE-2010-0272 and CVE-2010-0273.
network
low complexity
sun CWE-20
critical
10.0