Skip to main content

Vendor archive

sun CVEs

Beta · best-effort

1,581 CVEs tagged to vendor sun332 Critical, 382 High, 697 Medium, 168 Low, 2 Unrated.

CVE-2021-43360

Published Dec 1, 2021

Sunnet eHRD e-mail delivery task schedule’s serialization function has inadequate input object validation and restriction, which allows a post-authenticated remote attacker with d…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-43359

Published Dec 1, 2021

Sunnet eHRD has broken access control vulnerability, which allows a remote attacker to access account management page after being authenticated as a general user, then perform pri…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-43358

Published Dec 1, 2021

Sunnet eHRD has inadequate filtering for special characters in URLs, which allows a remote attacker to perform path traversal attacks without authentication, access restricted pat…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-10510

Published Mar 27, 2020

Sunnet eHRD, a human training and development management system, contains a vulnerability of Broken Access Control. After login, attackers can use a specific URL, access unauthori…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-10509

Published Mar 27, 2020

Sunnet eHRD, a human training and development management system, contains vulnerability of Cross-Site Scripting (XSS), attackers can inject arbitrary command into the system and l…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-10508

Published Mar 27, 2020

Sunnet eHRD, a human training and development management system, improperly stores system files. Attackers can use a specific URL and capture confidential information.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-6313

Published Apr 6, 2016

Cisco TelePresence Server 4.1(2.29) through 4.2(4.17) on 7010; Mobility Services Engine (MSE) 8710; Multiparty Media 310, 320, and 820; and Virtual Machine (VM) devices allows rem…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2016-1314

Published Mar 28, 2016

Cross-site scripting (XSS) vulnerability in Cisco Unified Communications Domain Manager (CDM) 8.1(1) allows remote authenticated users to inject arbitrary web script or HTML via a…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-1329

Published Mar 3, 2016

Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5) and 6.0(2)A7(1) on Nexus 3500 devices has hardcoded credentials, which allows…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2016-1331

Published Feb 15, 2016

Multiple cross-site scripting (XSS) vulnerabilities in Cisco Emergency Responder 11.5(0.99833.5) allow remote attackers to inject arbitrary web script or HTML via unspecified para…

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-1310

Published Feb 6, 2016

Cross-site scripting (XSS) vulnerability in Cisco Unity Connection 11.5(0.199) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuy09…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-1306

Published Feb 6, 2016

Multiple cross-site scripting (XSS) vulnerabilities in Cisco Fog Director 1.0(0) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug ID…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0430

Published Jan 21, 2015

Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect confidentiality via vectors related to RPC Utility.

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2015-0429

Published Jan 21, 2015

Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect integrity and availability via vectors related to RPC Utility.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2015-0428

Published Jan 21, 2015

Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect availability via unknown vectors related to Resource Control.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 1,581 CVEsPage 1 of 64