CVE-2017-10218
- EPSS 0.22%
- Published 08.08.2017 15:29:06
- Last modified 20.04.2025 01:37:25
Vulnerability in the Oracle Hospitality Guest Access component of Oracle Hospitality Applications (subcomponent: Base). Supported versions that are affected are 4.2.0.0 and 4.2.1.0. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2017-10217
- EPSS 0.41%
- Published 08.08.2017 15:29:06
- Last modified 20.04.2025 01:37:25
Vulnerability in the Oracle Hospitality Guest Access component of Oracle Hospitality Applications (subcomponent: Base). Supported versions that are affected are 4.2.0.0 and 4.2.1.0. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2017-9735
- EPSS 0.71%
- Published 16.06.2017 21:29:00
- Last modified 20.04.2025 01:37:25
Jetty through 9.4.x is prone to a timing channel in util/security/Password.java, which makes it easier for remote attackers to obtain access by observing elapsed times before rejection of incorrect passwords.
CVE-2016-8735
- EPSS 93.9%
- Published 06.04.2017 21:59:00
- Last modified 20.04.2025 01:37:25
Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, and 9.x before 9.0.0.M12 if JmxRemoteLifecycleListener is used and an attacker can reach JMX ports. The issue exists because...