Sun Java System Web Proxy Server vulnerabilities
11 known vulnerabilities affecting sun/java_system_web_proxy_server.
Total CVEs
11
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH2MEDIUM7
Vulnerabilities
Page 1 of 1
CVE-2008-4541CRITICALCVSS 10.0v4.0v4.0.1+6 more2008-10-13
CVE-2008-4541 [CRITICAL] CWE-119 CVE-2008-4541: Heap-based buffer overflow in the FTP subsystem in Sun Java System Web Proxy Server 4.0 through 4.0.
Heap-based buffer overflow in the FTP subsystem in Sun Java System Web Proxy Server 4.0 through 4.0.7 allows remote attackers to execute arbitrary code via a crafted HTTP GET request.
nvd
CVE-2008-3683MEDIUMCVSS 5.0v4v4.0.1+4 more2008-08-14
CVE-2008-3683 [MEDIUM] CVE-2008-3683: Unspecified vulnerability in the FTP subsystem in Sun Java System Web Proxy Server 4.0 through 4.0.5
Unspecified vulnerability in the FTP subsystem in Sun Java System Web Proxy Server 4.0 through 4.0.5 before SP6 allows remote attackers to cause a denial of service (failure to accept connections) via unknown vectors, probably related to exhaustion of file descriptors.
nvd
CVE-2007-6572MEDIUMCVSS 4.3v3.6v4.0+4 more2007-12-28
CVE-2007-6572 [MEDIUM] CWE-79 CVE-2007-6572: Cross-site scripting (XSS) vulnerability in Sun Java System Web Server 6.1 before SP8 and 7.0 before
Cross-site scripting (XSS) vulnerability in Sun Java System Web Server 6.1 before SP8 and 7.0 before Update 1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566204.
nvd
CVE-2007-6569MEDIUMCVSS 4.3≤ 4.0.6v3.62007-12-28
CVE-2007-6569 [MEDIUM] CWE-79 CVE-2007-6569: Cross-site scripting (XSS) vulnerability in the View Error Log functionality in Sun Java System Web
Cross-site scripting (XSS) vulnerability in the View Error Log functionality in Sun Java System Web Proxy Server 4.x before 4.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566246.
nvd
CVE-2007-6570MEDIUMCVSS 4.3v3.6v4.0+4 more2007-12-28
CVE-2007-6570 [MEDIUM] CWE-79 CVE-2007-6570: Cross-site scripting (XSS) vulnerability in the View URL Database functionality in Sun Java System W
Cross-site scripting (XSS) vulnerability in the View URL Database functionality in Sun Java System Web Proxy Server 4.x before 4.0.6 and 3.x before 3.6 SP11 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566309.
nvd
CVE-2007-6571MEDIUMCVSS 4.3v3.6v4.0+4 more2007-12-28
CVE-2007-6571 [MEDIUM] CWE-79 CVE-2007-6571: Cross-site scripting (XSS) vulnerability in Sun Java System Web Proxy Server 3.6 before SP11 on Wind
Cross-site scripting (XSS) vulnerability in Sun Java System Web Proxy Server 3.6 before SP11 on Windows allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6611356.
nvd
CVE-2007-2881CRITICALCVSS 10.0≤ 4.0.42007-05-29
CVE-2007-2881 [CRITICAL] CVE-2007-2881: Multiple stack-based buffer overflows in the SOCKS proxy support (sockd) in Sun Java Web Proxy Serve
Multiple stack-based buffer overflows in the SOCKS proxy support (sockd) in Sun Java Web Proxy Server before 4.0.5 allow remote attackers to execute arbitrary code via crafted packets during protocol negotiation.
nvd
CVE-2006-6276MEDIUMCVSS 6.8v3.6v4.02006-12-04
CVE-2006-6276 [MEDIUM] CWE-444 CVE-2006-6276: HTTP request smuggling vulnerability in Sun Java System Proxy Server before 20061130, when used with
HTTP request smuggling vulnerability in Sun Java System Proxy Server before 20061130, when used with Sun Java System Application Server or Sun Java System Web Server, allows remote attackers to bypass HTTP request filtering, hijack web sessions, perform cross-site scripting (XSS), and poison web caches via unspecified attack vectors.
nvd
CVE-2005-4806MEDIUMCVSS 5.0v3.62005-12-31
CVE-2005-4806 [MEDIUM] CVE-2005-4806: Multiple unspecified vulnerabilities in Sun Java System Web Proxy Server 3.6 SP7 and earlier allow r
Multiple unspecified vulnerabilities in Sun Java System Web Proxy Server 3.6 SP7 and earlier allow remote attackers to cause a denial of service (unresponsive service) via unknown vectors.
nvd
CVE-2005-1232HIGHCVSS 7.5v3.62005-05-02
CVE-2005-1232 [HIGH] CVE-2005-1232: Buffer overflow in Sun Java System Web Proxy Server (aka Sun ONE Proxy Server) 3.6 SP6 allows remote
Buffer overflow in Sun Java System Web Proxy Server (aka Sun ONE Proxy Server) 3.6 SP6 allows remote attackers to execute arbitrary code via unknown vectors.
nvd
CVE-2004-1350HIGHCVSS 7.5v3.62004-10-30
CVE-2004-1350 [HIGH] CVE-2004-1350: Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 th
Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary code via unknown vectors, possibly CONNECT requests.
nvd