CVE-2017-10218
- EPSS 0.22%
- Veröffentlicht 08.08.2017 15:29:06
- Zuletzt bearbeitet 13.05.2026 00:24:29
Vulnerability in the Oracle Hospitality Guest Access component of Oracle Hospitality Applications (subcomponent: Base). Supported versions that are affected are 4.2.0.0 and 4.2.1.0. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2017-10217
- EPSS 0.41%
- Veröffentlicht 08.08.2017 15:29:06
- Zuletzt bearbeitet 13.05.2026 00:24:29
Vulnerability in the Oracle Hospitality Guest Access component of Oracle Hospitality Applications (subcomponent: Base). Supported versions that are affected are 4.2.0.0 and 4.2.1.0. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2017-9735
- EPSS 0.84%
- Veröffentlicht 16.06.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Jetty through 9.4.x is prone to a timing channel in util/security/Password.java, which makes it easier for remote attackers to obtain access by observing elapsed times before rejection of incorrect passwords.
CVE-2016-8735
- EPSS 93.81%
- Veröffentlicht 06.04.2017 21:59:00
- Zuletzt bearbeitet 21.04.2026 17:03:44
Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, and 9.x before 9.0.0.M12 if JmxRemoteLifecycleListener is used and an attacker can reach JMX ports. The issue exists because...