- EPSS 0.73%
- Published 25.02.2010 19:30:00
- Last modified 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in (1) ns-slapd and (2) slapd.exe in Sun Directory Server Enterprise Edition 7.0, Sun Java System Directory Server 5.2, and Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 allow remote attack...
- EPSS 8.87%
- Published 14.01.2010 19:30:00
- Last modified 09.04.2025 00:30:58
The core_get_proxyauth_dn function in ns-slapd in Sun Java System Directory Server Enterprise Edition 7.0 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted LDAP Search Request message.
CVE-2009-4443
- EPSS 1.48%
- Published 28.12.2009 19:30:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in the psearch (aka persistent search) functionality in Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 allows remote attackers to cause a denial of service (psearch outa...
- EPSS 1.33%
- Published 28.12.2009 19:30:00
- Last modified 09.04.2025 00:30:58
Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly implement the max-client-connections configuration setting, which allows remote attackers to cause a denial of service (connection...
- EPSS 1.8%
- Published 28.12.2009 19:30:00
- Last modified 09.04.2025 00:30:58
Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not enable the SO_KEEPALIVE socket option, which makes it easier for remote attackers to cause a denial of service (connection slot exhaustion)...
CVE-2009-4440
- EPSS 1.14%
- Published 28.12.2009 19:30:00
- Last modified 09.04.2025 00:30:58
Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly handle multiple client connections within a short time window, which allows remote attackers to hijack the backend connection of a...
- EPSS 0.42%
- Published 17.04.2009 14:30:00
- Last modified 09.04.2025 00:30:58
The Online Help feature in Sun Java System Directory Server 5.2 and Enterprise Edition 5 allows remote attackers to determine the existence of files and directories, and possibly obtain partial contents of files, via unspecified vectors.
CVE-2009-0609
- EPSS 0.74%
- Published 17.02.2009 17:30:06
- Last modified 09.04.2025 00:30:58
Sun Java System Directory Proxy Server in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3, when a JDBC data source is used, does not properly handle (1) a long value in an ADD or (2) long string attributes, which allows remote att...
CVE-2009-0576
- EPSS 2.03%
- Published 13.02.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in Sun Java System Directory Server 5.2 p6 and earlier, and Enterprise Edition 5, allows remote attackers to cause a denial of service (daemon crash) via crafted LDAP requests.
CVE-2008-1995
- EPSS 0.39%
- Published 28.04.2008 17:05:00
- Last modified 09.04.2025 00:30:58
Sun Java System Directory Proxy Server 6.0, 6.1, and 6.2 classifies a connection using the "bind-dn" criteria, which can cause an incorrect application of policy and allows remote attackers to bypass intended access restrictions for the server.