CVE-2004-1350
published 2004-10-30CVE-2004-1350: Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary…
PriorityP337high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
7.66%
93.9th percentile
Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary code via unknown vectors, possibly CONNECT requests.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sun | java_system_web_proxy_server | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jc9j-72j5-pw3x: Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3
ghsa_unreviewed·2022-04-29
CVE-2004-1350 [HIGH] GHSA-jc9j-72j5-pw3x: Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3
Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary code via unknown vectors, possibly CONNECT requests.
Red Hat
namazu XSS flaw
vendor_redhat·CVSS 7.5
CVE-2008-1468 [HIGH] namazu XSS flaw
namazu XSS flaw
Cross-site scripting (XSS) vulnerability in namazu.cgi in Namazu before 2.0.18 allows remote attackers to inject arbitrary web script or HTML via UTF-7 encoded input, related to failure to set the charset, a different vector than CVE-2004-1318 and CVE-2001-1350. NOTE: some of these details are obtained from third party information.
No detection rules found.
No public exploits indexed.
http://secunia.com/advisories/13036/http://securitytracker.com/id?1012005http://sunsolve.sun.com/search/document.do?assetkey=1-26-57606-1&searchclause=securityhttp://www.auscert.org.au/render.html?it=4516http://www.ciac.org/ciac/bulletins/p-027.shtmlhttp://www.kb.cert.org/vuls/id/964401http://www.osvdb.org/displayvuln.php?osvdb_id=11304http://www.pentest.co.uk/documents/ptl-2004-06.htmlhttp://www.securityfocus.com/bid/11566https://exchange.xforce.ibmcloud.com/vulnerabilities/17920http://secunia.com/advisories/13036/http://securitytracker.com/id?1012005http://sunsolve.sun.com/search/document.do?assetkey=1-26-57606-1&searchclause=securityhttp://www.auscert.org.au/render.html?it=4516http://www.ciac.org/ciac/bulletins/p-027.shtmlhttp://www.kb.cert.org/vuls/id/964401http://www.osvdb.org/displayvuln.php?osvdb_id=11304http://www.pentest.co.uk/documents/ptl-2004-06.htmlhttp://www.securityfocus.com/bid/11566https://exchange.xforce.ibmcloud.com/vulnerabilities/17920
2004-10-30
Published