Skip to main content

Vendor/product archive

sun / ray_server_software CVEs

Beta · best-effort

15 CVEs tagged to sun / ray_server_software1 Critical, 5 High, 6 Medium, 3 Low, 0 Unrated.

CVE-2009-4314

Published Dec 14, 2009

Sun Ray Server Software 4.1 on Solaris 10, when Automatic Multi-Group Hotdesking (AMGH) is enabled, responds to a logout action by immediately logging the user in again, which mak…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-4295

Published Dec 11, 2009

Sun Ray Server Software 4.0 and 4.1 does not generate a unique DSA private key for the firmware on each Sun Ray 1, 1g, 100, and 150 DTU device, which makes it easier for remote at…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-4294

Published Dec 11, 2009

Unspecified vulnerability in the Authentication Manager (aka utauthd) in Sun Ray Server Software 4.0 and 4.1 allows remote attackers to execute arbitrary code or cause a denial of…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-2491

Published Jul 16, 2009

The utaudiod daemon in Sun Ray Server Software (SRSS) 4.0, when Solaris Trusted Extensions is enabled, allows local users to access the sessions of arbitrary users via unknown vec…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2490

Published Jul 16, 2009

Unspecified vulnerability in the utaudiod daemon in Sun Ray Server Software (SRSS) 4.0, when Solaris Trusted Extensions is enabled, allows local users to cause a denial of service…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2009-2489

Published Jul 16, 2009

Unspecified vulnerability in the utdmsession program in Sun Ray Server Software (SRSS) 4.0 allows local users to access the sessions of arbitrary users via unknown vectors.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2007-6481

Published Dec 20, 2007

Unspecified vulnerability in the Device Manager daemon (utdevmgrd) in Sun Ray Server Software 2.0, 3.0, 3.1, and 3.1.1 allows remote attackers to create or delete arbitrary direct…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0482

Published Jan 25, 2007

cgi-bin/main in Sun Ray Server Software 2.0 and 3.0 before 20070123 allows local users to obtain the utadmin password by reading a web server's log file, or by conducting a differ…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4049

Published Aug 9, 2006

Unspecified vulnerability in the utxconfig utility in Sun Ray Server Software 3.x allows local users to create or overwrite arbitrary files via unknown attack vectors.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-0701

Published Jul 27, 2004

Sun Ray Server Software (SRSS) 1.3 and 2.0 for Solaris 2.6, 7 and 8 does not properly detect a smartcard removal when the card is quickly removed, reinserted, and removed again, w…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-2036

Published Dec 31, 2002

Sun Ray Server Software (SRSS) 1.3, when Non-Smartcard Mobility (NSCM) is enabled, allows remote attackers to login as another user by running dtlogin from a system that supports…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1