Ray Server Software
Vendor:
First CVE: Dec 31, 2002 · Active for 23 years
15
Total CVEs
More Total CVEs than 92% of tracked products
2.5
Avg CVEs / Year
Higher CVE frequency than 74% of tracked products
5.6
Avg CVSS
Higher Avg CVSS than 16% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Ray Server Software over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2002
23 years ago
Most Recent CVE
Dec 14, 2009
6,066 days ago
CVE Severity & Scoring
Ray Server Software15 CVEs
20%
40%
40%
All CVEs352,294 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown15 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown15 (100.0%)
User Interaction
None0 (0.0%)
Unknown15 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown15 (100.0%)
Top CVEs
Signals from CVEs in this product scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-4294HIGH Unspecified vulnerability in the Authentication Manager (aka utauthd) in Sun Ray Server Software 4.0 and 4.1 allows remote attackers to execute arbitrary code or cause a denial of | Dec 11, 2009 | 10.0 | 26 | NO | NO |
CVE-2008-2112HIGH Unspecified vulnerability in Sun Ray Kiosk Mode 4.0 allows local and remote authenticated Sun Ray administrators to gain root privileges via unknown vectors related to utconfig. | May 8, 2008 | 8.5 | 24 | NO | NO |
CVE-2007-6482HIGH Unspecified vulnerability in the Device Manager daemon (utdevmgrd) in Sun Ray Server Software 2.0, 3.0, 3.1, and 3.1.1 allows remote attackers to cause a denial of service (daemon | Dec 20, 2007 | 7.8 | 23 | NO | NO |
CVE-2009-4295HIGH Sun Ray Server Software 4.0 and 4.1 does not generate a unique DSA private key for the firmware on each Sun Ray 1, 1g, 100, and 150 DTU device, which makes it easier for remote att | Dec 11, 2009 | 7.8 | 20 | NO | NO |
CVE-2008-5422HIGH Sun Sun Ray Server Software 3.1 through 4.0 does not properly restrict access, which allows remote attackers to discover the Sun Ray administration password, and obtain admin acces | Dec 11, 2008 | 7.5 | 20 | NO | NO |
CVE-2007-6481MEDIUM Unspecified vulnerability in the Device Manager daemon (utdevmgrd) in Sun Ray Server Software 2.0, 3.0, 3.1, and 3.1.1 allows remote attackers to create or delete arbitrary directo | Dec 20, 2007 | 6.4 | 20 | NO | NO |
CVE-2002-2036HIGH Sun Ray Server Software (SRSS) 1.3, when Non-Smartcard Mobility (NSCM) is enabled, allows remote attackers to login as another user by running dtlogin from a system that supports t | Dec 31, 2002 | 7.5 | 19 | NO | NO |
CVE-2007-0482MEDIUM cgi-bin/main in Sun Ray Server Software 2.0 and 3.0 before 20070123 allows local users to obtain the utadmin password by reading a web server's log file, or by conducting a differe | Jan 25, 2007 | 4.6 | 16 | NO | NO |
CVE-2009-2491MEDIUM The utaudiod daemon in Sun Ray Server Software (SRSS) 4.0, when Solaris Trusted Extensions is enabled, allows local users to access the sessions of arbitrary users via unknown vect | Jul 16, 2009 | 4.4 | 15 | NO | NO |
CVE-2009-4314MEDIUM Sun Ray Server Software 4.1 on Solaris 10, when Automatic Multi-Group Hotdesking (AMGH) is enabled, responds to a logout action by immediately logging the user in again, which make | Dec 14, 2009 | 4.4 | 14 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (15 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (15 CVEs).
Media Mentions
Signals from CVEs in this product scope (15 CVEs).
Top CNAs Publishing CVEs For Ray Server Software
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.1 | 3 | 7.8 | 2.8% | 0 | 0 |
| 4.0 | 8 | 5.3 | 1.4% | 0 | 0 |
| 3.1.1 | 4 | 6.1 | 1.8% | 0 | 0 |
| 3.1 | 4 | 6.2 | 1.7% | 0 | 0 |
| 3.0 | 6 | 5.6 | 1.5% | 0 | 0 |
| 2.0 | 4 | 5.8 | 1.6% | 0 | 0 |
| 1.3 | 2 | 6.0 | 0.9% | 0 | 0 |