cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-21151,https://securityvulnerability.io/vulnerability/CVE-2024-21151,Oracle Solaris Vulnerability Allowing Partial Denial of Service,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Solaris. CVSS 3.1 Base Score 3.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L).,Oracle,Solaris Operating System,3.3,LOW,0.0004299999854993075,false,false,false,false,,false,false,2024-07-16T23:15:00.000Z,0 CVE-2024-20999,https://securityvulnerability.io/vulnerability/CVE-2024-20999,Privilege Escalation in Oracle Solaris Zones by Oracle Systems,"A vulnerability in Oracle Solaris related to the Zones component poses a significant risk to the integrity and security of the system. An attacker with high privileges and access to the infrastructure where Oracle Solaris operates can exploit this vulnerability. This could potentially lead to a complete takeover of the Oracle Solaris system, affecting not only the primary product but potentially other interconnected systems as well. Given the simplicity of the exploitation method, it is imperative for users and administrators to remain vigilant and apply necessary patches and updates in a timely manner.",Oracle,Solaris Operating System,8.2,HIGH,0.0004299999854993075,false,false,false,false,,false,false,2024-04-16T22:15:00.000Z,0 CVE-2024-21059,https://securityvulnerability.io/vulnerability/CVE-2024-21059,"Vulnerability in Oracle Solaris Utility, Affecting Oracle Systems","A vulnerability in the Oracle Solaris product's utility component may allow a low-privileged attacker with logon access to compromise the system. Although primarily impacting Oracle Solaris, the nature of this flaw could extend its effects to additional products. Successful exploitation could result in unauthorized takeover of the system, leading to potential breaches of confidentiality, integrity, and availability. Organizations utilizing Oracle Solaris 11 are advised to evaluate their security posture and implement necessary safeguards to mitigate risks associated with this vulnerability.",Oracle,Solaris,,,0.0004299999854993075,false,false,false,false,,false,false,2024-04-16T22:15:00.000Z,0 CVE-2024-20946,https://securityvulnerability.io/vulnerability/CVE-2024-20946,Kernel Vulnerability in Oracle Solaris by Oracle Systems,"A vulnerability in the Oracle Solaris Kernel allows a low privileged attacker, with access to the infrastructure where Oracle Solaris runs, to exploit the system. Successful exploitation can lead to a denial of service by causing the system to hang or repeatedly crash, significantly disrupting service availability.",Oracle,Solaris Operating System,5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-01-16T21:41:19.641Z,0 CVE-2024-20920,https://securityvulnerability.io/vulnerability/CVE-2024-20920,Low Privilege Vulnerability in Oracle Solaris Filesystem Component,"This vulnerability exists within the Oracle Solaris filesystem component, allowing low privileged attackers who have logged into the affected infrastructure to gain unauthorized read access to certain data within Oracle Solaris. Although the issue is primarily within Oracle Solaris, its exploitation could have broader implications, affecting other associated products. It is crucial for users operating Oracle Solaris 11 to apply the necessary updates to mitigate the risks linked to this vulnerability.",Oracle,Solaris Operating System,3.8,LOW,0.0004299999854993075,false,false,false,false,,false,false,2024-01-16T21:41:15.262Z,0 CVE-2023-22129,https://securityvulnerability.io/vulnerability/CVE-2023-22129,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. Note: This vunlerability only affects SPARC Systems. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2023-10-17T22:15:00.000Z,0 CVE-2023-22128,https://securityvulnerability.io/vulnerability/CVE-2023-22128,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). Supported versions that are affected are 10 and 11. Difficult to exploit vulnerability allows unauthenticated attacker with network access via rquota to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Solaris accessible data. CVSS 3.1 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N).,Oracle,Solaris Operating System,3.1,LOW,0.0009500000160187483,false,false,false,false,,false,false,2023-10-17T22:15:00.000Z,0 CVE-2023-22023,https://securityvulnerability.io/vulnerability/CVE-2023-22023,Vulnerability in Device Driver Interface of Oracle Solaris by Oracle Systems,"An exploitable vulnerability exists within the Device Driver Interface of Oracle Solaris, allowing an attacker with low privileges and access to the system to compromise the integrity of the operating system. Successfully exploiting this flaw can result in the complete takeover of Oracle Solaris, posing significant risks to system confidentiality, integrity, and availability.",Oracle,Solaris Operating System,7.8,HIGH,0.0004299999854993075,false,false,false,false,,false,false,2023-07-18T21:15:00.000Z,0 CVE-2023-21928,https://securityvulnerability.io/vulnerability/CVE-2023-21928,,"Vulnerability in the Oracle Solaris product of Oracle Systems (component: IPS repository daemon). The supported version that is affected is 11. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Solaris accessible data. CVSS 3.1 Base Score 1.8 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:L/A:N).",Oracle,Solaris Operating System,1.8,LOW,0.00044999999227002263,false,false,false,false,,false,false,2023-04-18T20:15:00.000Z,0 CVE-2023-21896,https://securityvulnerability.io/vulnerability/CVE-2023-21896,Oracle Solaris NSSwitch Vulnerability in Oracle Systems,"A vulnerability exists in the NSSwitch component of Oracle Solaris that could allow a low-privileged attacker with access to the system to execute a successful exploit. This could potentially compromise the integrity and availability of Oracle Solaris, leading to unauthorized access and control over the affected infrastructure. The supported versions impacted by this vulnerability include Oracle Solaris 10 and 11. It is crucial for administrators to review security settings and apply necessary updates to safeguard their systems.",Oracle,Solaris Operating System,7,HIGH,0.00044999999227002263,false,false,false,false,,false,false,2023-04-18T20:15:00.000Z,0 CVE-2023-21985,https://securityvulnerability.io/vulnerability/CVE-2023-21985,Vulnerability in Oracle Solaris Utility Affects Oracle Systems,"A vulnerability has been identified in the Utility component of Oracle Solaris, affecting versions 10 and 11. This vulnerability allows an attacker with high privileges who has logged onto the infrastructure where Oracle Solaris operates to compromise the system. The attack necessitates human interaction from a third party, elevating its risk. Although the vulnerability is specific to Oracle Solaris, its exploitation could have far-reaching effects on associated products. Successful exploitation may enable an attacker to take control of Oracle Solaris, leading to potential disruptions and security breaches.",Oracle,Solaris Operating System,7.7,HIGH,0.00044999999227002263,false,false,false,false,,false,false,2023-04-18T20:15:00.000Z,0 CVE-2023-22003,https://securityvulnerability.io/vulnerability/CVE-2023-22003,,"Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Solaris accessible data. CVSS 3.1 Base Score 3.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N).",Oracle,Solaris Operating System,3.3,LOW,0.00044999999227002263,false,false,false,false,,false,false,2023-04-18T20:15:00.000Z,0 CVE-2023-21948,https://securityvulnerability.io/vulnerability/CVE-2023-21948,Local Privilege Escalation Vulnerability in Oracle Solaris by Oracle Systems,"This vulnerability in Oracle Solaris allows an attacker with low privileges to gain unauthorized access and potentially take over the system. When executed, it can compromise confidentiality, integrity, and availability of the affected environment. It underscores the necessity for proper security measures and timely updates to protect sensitive infrastructures from exploitation.",Oracle,Solaris Operating System,7.8,HIGH,0.00044999999227002263,false,false,false,false,,false,false,2023-04-18T20:15:00.000Z,0 CVE-2023-21984,https://securityvulnerability.io/vulnerability/CVE-2023-21984,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Libraries). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,6.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2023-04-18T20:15:00.000Z,0 CVE-2023-21900,https://securityvulnerability.io/vulnerability/CVE-2023-21900,,"Vulnerability in the Oracle Solaris product of Oracle Systems (component: NSSwitch). Supported versions that are affected are 10 and 11. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Solaris, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Solaris accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Solaris. CVSS 3.1 Base Score 4.0 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:N/I:L/A:L).",Oracle,Solaris Operating System,4,MEDIUM,0.0005300000193528831,false,false,false,false,,false,false,2023-01-18T00:15:00.000Z,0 CVE-2022-39417,https://securityvulnerability.io/vulnerability/CVE-2022-39417,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2022-10-18T00:00:00.000Z,0 CVE-2022-21610,https://securityvulnerability.io/vulnerability/CVE-2022-21610,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: LDoms). The supported version that is affected is 11. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Solaris accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Solaris. CVSS 3.1 Base Score 3.3 (Confidentiality and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:L).,Oracle,Solaris Operating System,3.3,LOW,0.00044999999227002263,false,false,false,false,,false,false,2022-10-18T00:00:00.000Z,0 CVE-2022-39401,https://securityvulnerability.io/vulnerability/CVE-2022-39401,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2022-10-18T00:00:00.000Z,0 CVE-2022-21533,https://securityvulnerability.io/vulnerability/CVE-2022-21533,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: SMB Server). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2022-07-19T21:07:19.000Z,0 CVE-2022-21524,https://securityvulnerability.io/vulnerability/CVE-2022-21524,,"Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with network access via SMB to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris as well as unauthorized update, insert or delete access to some of Oracle Solaris accessible data and unauthorized read access to a subset of Oracle Solaris accessible data. CVSS 3.1 Base Score 7.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H).",Oracle,Solaris Operating System,7.6,HIGH,0.00044999999227002263,false,false,false,false,,false,false,2022-07-19T21:07:05.000Z,0 CVE-2022-21514,https://securityvulnerability.io/vulnerability/CVE-2022-21514,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Remote Administration Daemon). The supported version that is affected is 11. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 7.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,7.5,HIGH,0.00044999999227002263,false,false,false,false,,false,false,2022-07-19T21:06:49.000Z,0 CVE-2022-21439,https://securityvulnerability.io/vulnerability/CVE-2022-21439,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 4.2 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,4.2,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2022-07-19T21:06:36.000Z,0 CVE-2022-21494,https://securityvulnerability.io/vulnerability/CVE-2022-21494,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 4.0 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,4,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2022-04-19T20:38:48.000Z,0 CVE-2022-21493,https://securityvulnerability.io/vulnerability/CVE-2022-21493,,"Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Solaris, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:H).",Oracle,Solaris Operating System,5.9,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2022-04-19T20:38:47.000Z,0 CVE-2022-21463,https://securityvulnerability.io/vulnerability/CVE-2022-21463,,Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).,Oracle,Solaris Operating System,5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2022-04-19T20:37:59.000Z,0