| ID | Date Public | Name |
|---|
VU#355284 | 11/28/2005 | Sun Java Runtime Environment applet privilege escalation vulnerability |
VU#760344 | 11/22/2004 | Sun Java Plug-in fails to restrict access to private Java packages |
VU#319771 | 11/05/2007 | Apple QuickTime for Java may allow Java applets to gain elevated privileges |
VU#138545 | 06/04/2007 | Java Runtime Environment Image Parsing Code buffer overflow vulnerability |
VU#995836 | 05/29/2007 | Apple QuickTime for Java security bypass vulnerability |
VU#102289 | 12/20/2006 | Sun Java JRE vulnerable to privilege escalation |
VU#759996 | 02/07/2006 | Sun Java Reflection API security bypass vulnerabilities |
VU#652636 | 02/07/2006 | Sun Java Web Start security bypass vulnerability |
VU#974188 | 11/28/2005 | Sun Java Runtime Environment "reflection" API privilege elevation vulnerabilities |
VU#931684 | 11/28/2005 | Sun Java Management Extensions privilege escalation vulnerability |
VU#420222 | 12/20/2004 | Konqueror fails to restrict access to Java classes |
VU#118558 | 05/06/2004 | Sun Java Runtime Environment vulnerable to DoS |
VU#116875 | 07/18/2001 | Adobe PhotoDeluxe does not adequately restrict Java execution |
VU#223028 | 03/06/2008 | Sun Java WebStart stack buffer overflow |
VU#336105 | 10/04/2007 | Sun Java JRE vulnerable to unauthorized network access |
VU#434748 | 05/29/2007 | Apple QuickTime for Java information disclosure vulnerability |
VU#388289 | 01/16/2007 | Sun Microsystems Java GIF image processing buffer overflow |
VU#149457 | 12/20/2006 | Sun Java JRE vulnerable to arbitrary code execution via an undetermined error |
VU#420668 | 04/20/2007 | Apple QuickTime for Java QTPointerRef heap memory corruption vulnerability |
VU#939609 | 12/20/2006 | Sun Java JRE vulnerable to arbitrary code execution via an unspecified error |
VU#594904 | 11/01/2006 | Sun Network Security Services (NSS) vulnerable to DoS due to an unspecified vulnerability |
VU#495556 | 10/11/2005 | VERITAS NetBackup Java Administration Console contains a format string vulnerability in "bpjava-msvc" |
VU#544392 | 02/08/2005 | Sun Java Plugin may create temporary files with predictable names |
VU#964401 | 10/29/2004 | Sun Java System Web Proxy Server vulnerable to buffer overflow |
VU#140898 | 09/09/2002 | Microsoft Java implementation allows execution of malicious code |
VU#657625 | 11/12/2002 | Microsoft Virtual Machine incorrectly parses the domain portion of URLs containing a colon |
VU#307306 | 09/09/2002 | Microsoft Java implementation JDBC classes do not properly validate DLL requests |
VU#447569 | 04/09/2003 | Microsoft Windows Virtual Machine (VM) ByteCode Verifier fails to properly check Java applets for malicious code |
VU#237777 | 11/12/2002 | Microsoft Virtual Machine allows applets write access to the Standard Security Manager |
VU#393292 | 06/04/2003 | Sun Java Runtime Environment allows untrusted applets to access information within trusted applets |
VU#897529 | 11/12/2002 | Microsoft Virtual Machine allows untrusted applets to access the user.dir system property |
VU#792881 | 09/09/2002 | Microsoft Java implementation JDBC functions do not properly validate parameters |
VU#32231 | 08/03/2000 | Netscape Java Security Manager fails to prevent URLConnections through netscape.net.URLConnection Class |
VU#959207 | 11/28/2000 | Lotus Notes Java VM leaks file existence through timing difference in ECLs |
VU#746889 | 05/25/2007 | Sun Java System Web Proxy Server fails to properly process malformed packets |
VU#243681 | 06/29/2006 | OpenOffice.org may fail to properly contain certain Java applets |
VU#881254 | 07/21/2004 | Sun Java System Portal Server fails to properly handle changes to display options |
VU#166651 | 10/14/2008 | Husdawg, LLC Systems Requirements Lab ActiveX control and Java applet vulnerable to arbitrary code download and execution |
VU#547459 | 02/06/2002 | Oracle 9iAS creates temporary files when processing JSP requests that are world-readable |
VU#114956 | 03/08/2005 | Sun ONE and Sun Java System Applications vulnerable to cross-site scripting via default error page |
VU#829400 | 12/27/2005 | Research in Motion (RIM) BlackBerry Handheld web browser does not properly handle Java Application Description (JAD) files |
VU#685456 | 10/20/2004 | Veritas NetBackup "bpjava-susvc" process contains an input validation error |
VU#981651 | 07/02/2001 | Caucho Technologies Resin vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#560659 | 07/02/2001 | IBM WebSphere vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#270083 | 07/02/2001 | IBM VisualAge Professional vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#672683 | 07/02/2001 | Apache Tomcat vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#131569 | 07/12/2001 | Microsoft Outlook View Control allows execution of arbitrary code and manipulation of user data |
VU#654643 | 07/02/2001 | Allaire JRun Java Application Server vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#632656 | 02/20/2007 | JBoss Application Server may not properly restrict access to the administrative interface |
VU#212984 | 11/03/2007 | Mortbay Jetty vulnerable to HTTP response splitting |
VU#118388 | 04/21/2006 | Symantec Scan Engine fails to properly perform authentication |
VU#612949 | 06/16/2005 | XMLHttpRequest Object security bypass in Opera Web Browser |
VU#110803 | 05/23/2001 | CrushFTP Server does not adequately filter user input thereby permitting directory traversal |
VU#698467 | 02/06/2002 | Oracle 9iAS default configuration allows access to "globals.jsa" file |
VU#343355 | 08/11/2008 | Apache Tomcat UTF8 Directory Traversal Vulnerability |
VU#305208 | 12/05/2007 | Caucho Resin vulnerable to XSS via "file" parameter to "viewfile" |
VU#767825 | 01/10/2008 | Liferay Portal fails to protect against CSRF |
VU#217825 | 01/10/2008 | Liferay Portal Admin portlet Shutdown message XSS |
VU#732449 | 01/10/2008 | Liferay Portal User Profile Greeting stored XSS |
VU#326065 | 01/10/2008 | Liferay Portal Enterprise Admin User-Agent HTTP header XSS |
VU#438616 | 11/05/2007 | Mortbay Jetty fails to properly handle cookies with quotes |
VU#237888 | 11/05/2007 | Mortbay Jetty Dump Servlet vulnerable to cross-site scripting |
VU#204710 | 03/14/2005 | Apache Tomcat fails to properly handle certain requests |
VU#434641 | 03/27/2006 | Microsoft Internet Explorer may automatically execute HTA files |
VU#184558 | 04/21/2004 | BEA WebLogic Server contains a vulnerability in the URL pattern matching |
VU#999788 | 07/31/2003 | BEA WebLogic Server code execution paths may cause the current user to be incorrect |
VU#350350 | 01/27/2004 | BEA WebLogic Server stores administrator password in clear text in config.xml |
VU#920238 | 04/14/2004 | BEA WebLogic Server stores database password in clear text in "config.xml" |
VU#642239 | 07/02/2001 | Lotus Domino Server R5 vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#566390 | 04/14/2004 | BEA WebLogic Server fails to properly validate certificate chains |
VU#798611 | 02/06/2002 | Oracle 9iAS contains cross-site scripting vulnerability in "htp.print" |
VU#352110 | 04/14/2004 | BEA WebLogic Server internal methods may disclose sensitive information |
VU#658878 | 04/21/2004 | BEA WebLogic Server allows unauthorized removal of EJB objects |
VU#750796 | 01/05/2010 | Liferay Portal p_p_id parameter vulnerable to persistent cross-site scripting |
VU#771937 | 02/13/2008 | Apache mod_jk2 host header buffer overflow |
VU#888209 | 01/10/2008 | Liferay Portal Forgot Password User-Agent HTTP header XSS |
VU#553235 | 12/28/2007 | Jetty fails to properly process URLs that contain double / characters |
VU#993544 | 08/13/2007 | Apache Tomcat fails to properly handle cookies containing single quotes |
VU#862600 | 07/21/2007 | Apache Tomcat SendMailServlet example vulnerable to cross-site scripting via FROM field |
VU#950070 | 05/12/2004 | BEA WebLogic Server contains vulnerability in handling of certain tags when editing "weblogic.xml" |
VU#858990 | 01/27/2004 | BEA WebLogic Server fails to properly associate the user identity on subsequent client connections |
VU#574222 | 04/21/2004 | BEA WebLogic Server configuration wizard stores administrative credentials in clear text log files |
VU#470470 | 04/14/2004 | BEA WebLogic Server fails to properly associate re-created groups |
VU#180876 | 01/24/2008 | GE Fanuc Proficy Information Portal transmits authentication credentials in plain text |
VU#671028 | 05/14/2007 | OPeNDAP filesystem enumeration vulnerability |
VU#428500 | 12/19/2006 | Mozilla LiveConnect vulnerable to crash finalizing JS objects |
VU#851869 | 06/14/2005 | Microsoft HTML Help vulnerable to integer overflow |
VU#717827 | 01/10/2002 | Multiple Oracle 9iAS sample pages contain vulnerabilities |
VU#243243 | 11/05/2001 | Entrust GetAccess does not validate user input thereby allowing users to read arbitrary files |
VU#939605 | 06/29/2005 | JVIEW Profiler (javaprxy.dll) COM object contains an unspecified vulnerability |
VU#865940 | 08/20/2003 | Microsoft Internet Explorer does not properly evaluate "application/hta" MIME type referenced by DATA attribute of OBJECT element |
VU#362483 | 11/28/2001 | Cisco IOS Firewall Feature Set fails to check IP protocol type thereby allowing packets to bypass dynamic access control lists |
VU#323070 | 11/25/2003 | Outlook Express MHTML protocol handler does not properly validate source of alternate content |
VU#498553 | 02/26/2007 | EMC NetWorker Management Console weak authentication vulnerability |
VU#435052 | 02/23/2009 | Intercepting proxy servers may incorrectly rely on HTTP headers to make connections |
VU#715737 | 11/07/2007 | Mozilla-based browsers jar: URI cross-site scripting vulnerability |
VU#402580 | 04/29/2009 | Jetty HTTP server directory traversal vulnerability |
VU#670060 | 07/25/2006 | Mozilla fails to properly release JavaScript references |
VU#724968 | 08/02/2007 | RSA key reconstruction vulnerability |
VU#547300 | 09/28/2006 | OpenSSL SSL_get_shared_ciphers() vulnerable to buffer overflow |
VU#845620 | 09/05/2006 | Multiple RSA implementations fail to properly handle signatures |
VU#386964 | 09/28/2006 | OpenSSL SSLv2 client code fails to properly check for NULL |
If this page is empty, your search did not match any documents.