CVE-2019-2945
- EPSS 0.27%
- Published 16.10.2019 18:15:29
- Last modified 21.11.2024 04:41:50
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauth...
CVE-2014-8183
- EPSS 0.15%
- Published 01.08.2019 14:15:10
- Last modified 21.11.2024 02:18:43
It was found that foreman, versions 1.x.x before 1.15.6, in Satellite 6 did not properly enforce access controls on certain resources. An attacker with access to the API and knowledge of the resource name can access resources in other organizations.
CVE-2019-10198
- EPSS 0.96%
- Published 31.07.2019 22:15:12
- Last modified 21.11.2024 04:18:38
An authentication bypass vulnerability was discovered in foreman-tasks before 0.15.7. Previously, commit tasks were searched through find_resource, which performed authorization checks. After the change to Foreman, an unauthenticated user can view th...
CVE-2019-11775
- EPSS 1.51%
- Published 30.07.2019 14:15:14
- Last modified 21.11.2024 04:21:46
All builds of Eclipse OpenJ9 prior to 0.15 contain a bug where the loop versioner may fail to privatize a value that is pulled out of the loop by versioning - for example if there is a condition that is moved out of the loop that reads a field we may...
CVE-2019-2816
- EPSS 0.2%
- Published 23.07.2019 23:15:43
- Last modified 21.11.2024 04:41:37
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 7u221, 8u212, 11.0.3 and 12.0.1; Java SE Embedded: 8u211. Difficult to exploit vulnerability allo...
CVE-2019-2786
- EPSS 0.29%
- Published 23.07.2019 23:15:41
- Last modified 21.11.2024 04:41:33
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 8u212, 11.0.3 and 12.0.1; Java SE Embedded: 8u211. Difficult to exploit vulnerability allows unauth...
CVE-2019-2769
- EPSS 0.25%
- Published 23.07.2019 23:15:40
- Last modified 21.11.2024 04:41:31
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Utilities). Supported versions that are affected are Java SE: 7u221, 8u212, 11.0.3 and 12.0.1; Java SE Embedded: 8u211. Easily exploitable vulnerability allows ...
CVE-2019-2762
- EPSS 0.5%
- Published 23.07.2019 23:15:39
- Last modified 21.11.2024 04:41:30
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Utilities). Supported versions that are affected are Java SE: 7u221, 8u212, 11.0.3 and 12.0.1; Java SE Embedded: 8u211. Easily exploitable vulnerability allows ...
CVE-2019-10136
- EPSS 0.1%
- Published 02.07.2019 20:15:11
- Last modified 21.11.2024 04:18:29
It was found that Spacewalk, all versions through 2.9, did not safely compute client token checksums. An attacker with a valid, but expired, authenticated set of headers could move some digits around, artificially extending the session validity witho...
CVE-2019-10137
- EPSS 8.94%
- Published 02.07.2019 20:15:11
- Last modified 21.11.2024 04:18:29
A path traversal flaw was found in spacewalk-proxy, all versions through 2.9, in the way the proxy processes cached client tokens. A remote, unauthenticated attacker could use this flaw to test the existence of arbitrary files, if they have access to...