Vulnerabilities > SUN > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-03-27 CVE-2020-10510 Improper Input Validation vulnerability in SUN Ehrd 8/9
Sunnet eHRD, a human training and development management system, contains a vulnerability of Broken Access Control.
network
low complexity
sun CWE-20
4.0
2020-03-27 CVE-2020-10509 Cross-site Scripting vulnerability in SUN Ehrd 8.0/9.0
Sunnet eHRD, a human training and development management system, contains vulnerability of Cross-Site Scripting (XSS), attackers can inject arbitrary command into the system and launch XSS attack.
network
sun CWE-79
4.3
2020-03-27 CVE-2020-10508 Information Exposure vulnerability in SUN Ehrd 8/9
Sunnet eHRD, a human training and development management system, improperly stores system files.
network
low complexity
sun CWE-200
5.0
2015-01-21 CVE-2015-0428 Local Security vulnerability in Oracle Solaris
Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect availability via unknown vectors related to Resource Control.
local
low complexity
sun
4.9
2015-01-21 CVE-2015-0375 Remote Security vulnerability in Oracle Solaris
Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows remote attackers to affect confidentiality via unknown vectors related to Network.
network
low complexity
sun
5.0
2015-01-21 CVE-2014-6600 Local Security vulnerability in SUN Sunos 5.11
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via unknown vectors related to File System, a different vulnerability than CVE-2014-6570 and CVE-2015-0397.
local
low complexity
sun
4.9
2015-01-21 CVE-2014-6575 Remote Security vulnerability in Oracle Solaris
Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows remote attackers to affect availability via unknown vectors related to Network, a different vulnerability than CVE-2004-0230.
network
low complexity
sun
5.0
2015-01-21 CVE-2014-6570 Local Security vulnerability in SUN Sunos 5.11
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via unknown vectors related to File System, a different vulnerability than CVE-2014-6600 and CVE-2015-0397.
local
low complexity
sun
4.9
2015-01-21 CVE-2014-6518 Local Security vulnerability in Oracle Solaris
Unspecified vulnerability in Oracle Solaris 10 and 11 allows local users to affect integrity and availability via vectors related to Unix File System (UFS).
local
low complexity
sun
6.6
2015-01-21 CVE-2014-6509 Local Security vulnerability in SUN Sunos 5.10
Unspecified vulnerability in Oracle Solaris 10 allows local users to affect availability via unknown vectors related to Kernel.
local
low complexity
sun
4.9