CVE-2017-10218
- EPSS 0.22%
- Veröffentlicht 08.08.2017 15:29:06
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Oracle Hospitality Guest Access component of Oracle Hospitality Applications (subcomponent: Base). Supported versions that are affected are 4.2.0.0 and 4.2.1.0. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2017-10217
- EPSS 0.41%
- Veröffentlicht 08.08.2017 15:29:06
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Oracle Hospitality Guest Access component of Oracle Hospitality Applications (subcomponent: Base). Supported versions that are affected are 4.2.0.0 and 4.2.1.0. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2017-9735
- EPSS 0.71%
- Veröffentlicht 16.06.2017 21:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Jetty through 9.4.x is prone to a timing channel in util/security/Password.java, which makes it easier for remote attackers to obtain access by observing elapsed times before rejection of incorrect passwords.
CVE-2016-8735
- EPSS 93.9%
- Veröffentlicht 06.04.2017 21:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, and 9.x before 9.0.0.M12 if JmxRemoteLifecycleListener is used and an attacker can reach JMX ports. The issue exists because...