Known vulnerabilities in Oracle Solaris 11.4 - page 6

Vendor: Oracle
Version: 11.4
Software CPE: cpe:2.3:o:oracle:solaris:*:*:*:*:*:*:*:*
Total vulnerabilities: 579
Public exploits: 24
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Oracle Solaris version 11.4 Oracle Solaris 11.4 is affected by 579 vulnerabilities: 3 critical, 129 high, 285 medium, 162 low Critical High Medium Low

Vulnerabilities (579)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU79881 - Heap-based Buffer Overflow
CVE-2021-3575
CWE-122 High
No
No
- 23.08.2023 SB2022030440
SB2023082320
SB2024022658
and 4 more
#VU79568 - NULL Pointer Dereference
CVE-2023-2731
CWE-476 Medium
No
No
- 16.08.2023 SB2023081605
SB2023081622
SB2023082320
and 13 more
#VU76761 - Heap-based Buffer Overflow
CVE-2023-32324
CWE-122 Medium
No
No
- 01.06.2023 SB2023060132
SB2023060133
SB2023060136
and 33 more
#VU76238 - Expected Behavior Violation
CVE-2023-28322
CWE-440 Medium
No
No
- 17.05.2023 SB2023051752
SB2023051760
SB2023051761
and 88 more
#VU76235 - Improper Synchronization
CVE-2023-28320
CWE-662 Low
No
No
- 17.05.2023 SB2023051752
SB2023051760
SB2023051761
and 28 more
#VU76233 - Use After Free
CVE-2023-28319
CWE-416 Low
No
No
- 17.05.2023 SB2023051752
SB2023051761
SB2023051762
and 27 more
#VU75790 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-24539
CWE-79 Medium
No
No
- 08.05.2023 SB2023050814
SB2023050817
SB2023050825
and 75 more
#VU75271 - Improper input validation
CVE-2023-21980
CWE-20 Medium
No
No
- 18.04.2023 SB20230418162
SB2023050821
SB2023050824
and 13 more
#VU74863 - NULL Pointer Dereference
CVE-2023-28484
CWE-476 Medium
No
No
- 11.04.2023 SB2023041144
SB2023041145
SB2023041939
and 87 more
#VU74003 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-27985
CWE-78 High
No
No
- 24.03.2023 SB2023032405
SB2023082320
SB20240806359
and 1 more
#VU74002 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-27986
CWE-94 High
No
No
- 24.03.2023 SB2023032405
SB2023082320
SB20240806359
#VU72575 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48339
CWE-78 High
No
No
- 26.02.2023 SB2022120142
SB2023022605
SB2023030230
and 50 more
#VU72574 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48338
CWE-78 Low
No
No
- 26.02.2023 SB2022120142
SB2023022605
SB2023030230
and 14 more
#VU72337 - Allocation of Resources Without Limits or Throttling
CVE-2023-23916
CWE-770 Medium
No
No
- 16.02.2023 SB2023021668
SB2023021670
SB2023021671
and 89 more
#VU72336 - Cleartext Transmission of Sensitive Information
CVE-2023-23915
CWE-319 Medium
No
No
- 16.02.2023 SB2023021668
SB2023021671
SB2023021672
and 26 more
#VU70723 - Out-of-bounds write
CVE-2023-0054
CWE-787 High
No
No
- 05.01.2023 SB2023010521
SB2023013071
SB2023013073
and 16 more
#VU70722 - Heap-based Buffer Overflow
CVE-2023-0051
CWE-122 High
No
No
- 05.01.2023 SB2023010521
SB2023010522
SB2023013071
and 15 more
#VU70096 - NULL Pointer Dereference
CVE-2022-37290
CWE-476 Low
No
No
- 09.12.2022 SB2022120921
SB2022120922
SB2022120923
and 12 more
#VU64682 - Resource exhaustion
CVE-2022-32206
CWE-400 Medium
No
No
- 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 80 more
#VU64230 - Out-of-bounds write
CVE-2022-31783
CWE-787 High
No
No
- 13.06.2022 SB2022061322
SB2022061325
SB2022070204
and 5 more


Showing elements 101 - 120 out of 579