CVE-2015-5006
- EPSS 0.48%
- Veröffentlicht 07.12.2015 20:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR2, 7 R1 before SR3 FP20, 7 before SR9 FP20, 6 R1 before SR8 FP15, and 6 before SR16 FP15 allow physically proximate attackers to obtain sensitive information by reading the K...
CVE-2015-8126
- EPSS 10.34%
- Veröffentlicht 13.11.2015 03:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.x before 1.2.54, 1.3.x and 1.4.x before 1.4.17, 1.5.x before 1.5.24, and 1.6.x before 1.6.19 allow remote attackers to cause a den...
- EPSS 13.35%
- Veröffentlicht 22.10.2015 00:00:03
- Zuletzt bearbeitet 22.04.2026 13:04:08
Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60 allows remote attackers to affect integrity via unknown vectors related to Deployment.
- EPSS 25.47%
- Veröffentlicht 16.07.2015 10:59:17
- Zuletzt bearbeitet 21.04.2026 18:07:25
Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability th...
- EPSS 73.85%
- Veröffentlicht 01.04.2015 02:00:35
- Zuletzt bearbeitet 28.05.2026 14:16:16
The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial ...
CVE-2014-7812
- EPSS 1.46%
- Veröffentlicht 15.01.2015 15:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
Cross-site scripting (XSS) vulnerability in Spacewalk and Red Hat Network (RHN) Satellite before 5.7.0 allows remote authenticated users to inject arbitrary web script or HTML via the System Groups field.
CVE-2014-3654
- EPSS 1.76%
- Veröffentlicht 03.11.2014 16:55:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple cross-site scripting (XSS) vulnerabilities in spacewalk-java 2.0.2 in Spacewalk and Red Hat Network (RHN) Satellite 5.5 and 5.6 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to (1) kickstart/cobbler/Cu...
CVE-2014-3595
- EPSS 1.76%
- Veröffentlicht 22.09.2014 15:55:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Cross-site scripting (XSS) vulnerability in spacewalk-java 1.2.39, 1.7.54, and 2.0.2 in Spacewalk and Red Hat Network (RHN) Satellite 5.4 through 5.6 allows remote attackers to inject arbitrary web script or HTML via a crafted request that is not pro...
- EPSS 3.06%
- Veröffentlicht 15.04.2014 23:55:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
The monitoring probe display in spacewalk-java before 2.1.148-1 and Red Hat Network (RHN) Satellite 4.0.0 through 4.2.0 and 5.1.0 through 5.3.0, and Proxy 5.3.0, allows remote authenticated users with permissions to administer monitoring probes to ex...
CVE-2013-1869
- EPSS 1.85%
- Veröffentlicht 01.04.2014 06:35:52
- Zuletzt bearbeitet 06.05.2026 22:30:45
CRLF injection vulnerability in spacewalk-java before 2.1.148-1 and Red Hat Network (RHN) Satellite 5.6 allows remote attackers to inject arbitrary HTTP headers, and conduct HTTP response splitting attacks and cross-site scripting (XSS) attacks, via ...