XP Command View
HP · 17 CVEs
A Remote Bypass of Security Restrictions vulnerability was identified in HPE XP Command View Advanced Edition Software…
Aug 6, 2018
OpenJDK: unbounded memory allocation in BasicAttributes deserialization (JNDI, 8191142)
Jan 18, 2018
OpenJDK: unbounded memory allocation during deserialization (AWT, 8190289)
Jan 18, 2018
OpenJDK: ArrayBlockingQueue deserialization to an inconsistent state (Libraries, 8189284)
Jan 18, 2018
JDK: unspecified vulnerability fixed in 6u181 and 7u171 (Serialization)
Jan 18, 2018
OpenJDK: GTK library loading use-after-free (AWT, 8185325)
Jan 18, 2018
OpenJDK: SingleEntryRegistry incorrect setup of deserialization filter (JMX, 8186998)
Jan 18, 2018
OpenJDK: use of global credentials for HTTP/SPNEGO (JGSS, 8186600)
Jan 18, 2018
OpenJDK: LDAPCertStore insecure handling of LDAP referrals (JNDI, 8186606)
Jan 18, 2018
OpenJDK: GSS context use-after-free (JGSS, 8186212)
Jan 18, 2018
OpenJDK: insufficient strength of key agreement (JCE, 8185292)
Jan 18, 2018
OpenJDK: DerValue unbounded memory allocation (Libraries, 8182387)
Jan 18, 2018
OpenJDK: loading of classes from untrusted locations (I18n, 8182601)
Jan 18, 2018
OpenJDK: DnsClient missing source port randomization (JNDI, 8182125)
Jan 18, 2018
OpenJDK: LdapLoginModule insufficient username encoding in LDAP query (LDAP, 8178449)
Jan 18, 2018
OpenJDK: insufficient validation of the invokeinterface instruction (Hotspot, 8174962)
Jan 18, 2018
OpenJDK: unsynchronized access to encryption key data (Libraries, 8172525)
Jan 18, 2018
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2017-8988 | A Remote Bypass of Security Restrictions vulnerability was identified in HPE XP Command View Advanced Edition Software Earlier than 8.5.3-00. The vulnerability… | CRITICAL | 2.67% | Aug 6, 2018 |
| CVE-2018-2678 | OpenJDK: unbounded memory allocation in BasicAttributes deserialization (JNDI, 8191142) | MEDIUM | 4.67% | Jan 18, 2018 |
| CVE-2018-2677 | OpenJDK: unbounded memory allocation during deserialization (AWT, 8190289) | MEDIUM | 4.67% | Jan 18, 2018 |
| CVE-2018-2663 | OpenJDK: ArrayBlockingQueue deserialization to an inconsistent state (Libraries, 8189284) | MEDIUM | 4.67% | Jan 18, 2018 |
| CVE-2018-2657 | JDK: unspecified vulnerability fixed in 6u181 and 7u171 (Serialization) | MEDIUM | 7.52% | Jan 18, 2018 |
| CVE-2018-2641 | OpenJDK: GTK library loading use-after-free (AWT, 8185325) | MEDIUM | 5.11% | Jan 18, 2018 |
| CVE-2018-2637 | OpenJDK: SingleEntryRegistry incorrect setup of deserialization filter (JMX, 8186998) | HIGH | 4.62% | Jan 18, 2018 |
| CVE-2018-2634 | OpenJDK: use of global credentials for HTTP/SPNEGO (JGSS, 8186600) | MEDIUM | 4.53% | Jan 18, 2018 |
| CVE-2018-2633 | OpenJDK: LDAPCertStore insecure handling of LDAP referrals (JNDI, 8186606) | HIGH | 5.65% | Jan 18, 2018 |
| CVE-2018-2629 | OpenJDK: GSS context use-after-free (JGSS, 8186212) | MEDIUM | 4.83% | Jan 18, 2018 |
| CVE-2018-2618 | OpenJDK: insufficient strength of key agreement (JCE, 8185292) | MEDIUM | 4.72% | Jan 18, 2018 |
| CVE-2018-2603 | OpenJDK: DerValue unbounded memory allocation (Libraries, 8182387) | MEDIUM | 6.91% | Jan 18, 2018 |
| CVE-2018-2602 | OpenJDK: loading of classes from untrusted locations (I18n, 8182601) | MEDIUM | 0.63% | Jan 18, 2018 |
| CVE-2018-2599 | OpenJDK: DnsClient missing source port randomization (JNDI, 8182125) | MEDIUM | 4.16% | Jan 18, 2018 |
| CVE-2018-2588 | OpenJDK: LdapLoginModule insufficient username encoding in LDAP query (LDAP, 8178449) | MEDIUM | 3.44% | Jan 18, 2018 |
| CVE-2018-2582 | OpenJDK: insufficient validation of the invokeinterface instruction (Hotspot, 8174962) | MEDIUM | 4.74% | Jan 18, 2018 |
| CVE-2018-2579 | OpenJDK: unsynchronized access to encryption key data (Libraries, 8172525) | LOW | 4.08% | Jan 18, 2018 |
Showing 1 to 17 of 17 CVEs