CVE-2017-10345
- EPSS 0.76%
- Veröffentlicht 19.10.2017 17:29:03
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144; JRockit: R28.3.15. Difficult to e...
CVE-2017-10281
- EPSS 0.73%
- Veröffentlicht 19.10.2017 17:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144; JRockit: R28.3.15. Easily exploit...
CVE-2017-10285
- EPSS 0.58%
- Veröffentlicht 19.10.2017 17:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthentica...
CVE-2017-10295
- EPSS 0.35%
- Veröffentlicht 19.10.2017 17:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144; JRockit: R28.3.15. Difficult to expl...
CVE-2017-10268
- EPSS 0.05%
- Veröffentlicht 19.10.2017 17:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.5.57 and earlier, 5.6.37 and earlier and 5.7.19 and earlier. Difficult to exploit vulnerability allows high pr...
CVE-2017-10274
- EPSS 0.61%
- Veröffentlicht 19.10.2017 17:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Smart Card IO). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9. Difficult to exploit vulnerability allows unauthenticated attacker with network acces...
CVE-2015-1239
- EPSS 0.83%
- Veröffentlicht 18.10.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a crafted PDF.
CVE-2017-15568
- EPSS 0.43%
- Veröffentlicht 18.10.2017 02:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In Redmine before 3.2.8, 3.3.x before 3.3.5, and 3.4.x before 3.4.3, XSS exists in app/helpers/application_helper.rb via a multi-value field with a crafted value that is mishandled during rendering of issue history.
CVE-2017-15569
- EPSS 0.43%
- Veröffentlicht 18.10.2017 02:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In Redmine before 3.2.8, 3.3.x before 3.3.5, and 3.4.x before 3.4.3, XSS exists in app/helpers/queries_helper.rb via a multi-value field with a crafted value that is mishandled during rendering of an issue list.
CVE-2017-15570
- EPSS 0.52%
- Veröffentlicht 18.10.2017 02:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In Redmine before 3.2.8, 3.3.x before 3.3.5, and 3.4.x before 3.4.3, XSS exists in app/views/timelog/_list.html.erb via crafted column data.