Opensso
This hub aggregates every CVE we track for Opensso, a product in the security products space. Use it to gauge the current risk picture and drill into individual advisories.
4
CVEs tracked
1
Critical
0
High
0
In CISA KEV
Severity distribution
MEDIUM3CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-082026-07
Latest CVEs
The 4 most recently published vulnerabilities affecting Opensso.
- CVE-2015-7182Heap-based buffer overflow in the ASN.1 decoder in Mozilla Network Security Services (NSS) before 3.19.2.1 and 3.20.x before 3.20.1, as used in Firefox before 42.0 and Firefox ESR 38.x before 38.4 ...9.8
- CVE-2013-1620The TLS implementation in Mozilla Network Security Services (NSS) does not properly consider timing side-channel attacks on a noncompliant MAC check operation during the processing of malformed CBC...4.3
- CVE-2012-0079Unspecified vulnerability in Oracle OpenSSO 7.1 and 8.0 allows remote attackers to affect integrity via unknown vectors related to Administration.4.3
- CVE-2010-4444Unspecified vulnerability in Oracle Sun Java System Access Manager and Oracle OpenSSO 7, 7.1, and 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.6.8
Product normalization is registry-driven with AI assist and human review. How it works