Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies; false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.

How to read the report | Suppressing false positives | Getting Help: google group | github issues

Project: runtime.plugins

Scan Information (show all):

Display: Showing Vulnerable Dependencies (click to show all)

Dependency CPE GAV Highest Severity CVE Count CPE Confidence Evidence Count
org.eclipse.osgi-3.12.0.v20170512-1932.jar org.eclipse.platform:org.eclipse.osgi:3.12.0    0 29
org.w3c.css.sac-1.3.1.v200903091627.jar org.eclipse.birt.runtime:org.w3c.css.sac:1.3.1.v200903091627    0 21
org.apache.batik.css-1.8.0.v20170214-1941.jar cpe:/a:apache:batik:1.8 org.eclipse.orbit.bundles:org.apache.batik.css:1.8.0-SNAPSHOT High 1 Highest 26
org.apache.commons.codec-1.9.0.v20170208-1614.jar org.eclipse.orbit.bundles:org.apache.commons.codec:1.9.0-SNAPSHOT   0 35
org.eclipse.osgi.services-3.6.0.v20170228-1906.jar org.eclipse.platform:org.eclipse.osgi.services:3.6.0    0 23
org.apache.felix.scr-2.0.10.v20170501-2007.jar   0 27
org.eclipse.osgi.util-3.4.0.v20170111-1608.jar org.eclipse.platform:org.eclipse.osgi.util:3.4.0    0 25
org.apache.commons.logging-1.1.1.v201101211721.jar org.eclipse.ecf:org.apache.commons.logging:1.1.1.v201101211721    0 22
org.apache.httpcomponents.httpcore-4.4.6.v20170210-0925.jar org.eclipse.orbit.bundles:org.apache.httpcomponents.httpcore:4.4.6-SNAPSHOT   0 40
org.apache.httpcomponents.httpclient-4.5.2.v20170210-0925.jar cpe:/a:apache:httpclient:4.5.2.v20170210 org.eclipse.orbit.bundles:org.apache.httpcomponents.httpclient:4.5.2-SNAPSHOT   0 Low 33
org.eclipse.core.commands-3.9.0.v20170530-1048.jar org.eclipse.platform:org.eclipse.core.commands:3.9.0    0 23
org.eclipse.equinox.common-3.9.0.v20170207-1454.jar org.eclipse.platform:org.eclipse.equinox.common:3.9.0    0 24
org.eclipse.core.contenttype-3.6.0.v20170207-1037.jar org.eclipse.platform:org.eclipse.core.contenttype:3.6.0    0 24
org.eclipse.equinox.preferences-3.7.0.v20170126-2132.jar org.eclipse.platform:org.eclipse.equinox.preferences:3.7.0    0 31
org.eclipse.equinox.registry-3.7.0.v20170222-1344.jar org.eclipse.platform:org.eclipse.equinox.registry:3.7.0    0 27
org.eclipse.core.databinding-1.6.100.v20170515-1119.jar org.eclipse.platform:org.eclipse.core.databinding:1.6.100    0 24
org.eclipse.core.databinding.observable-1.6.100.v20170515-1119.jar org.eclipse.platform:org.eclipse.core.databinding.observable:1.6.100    0 24
org.eclipse.core.databinding.property-1.6.100.v20170515-1119.jar cpe:/a:property_pro:property_pro:1.6.100.v20170515 org.eclipse.platform:org.eclipse.core.databinding.property:1.6.100    0 Low 24
com.ibm.icu-58.2.0.v20170418-1837.jar org.eclipse.orbit.bundles:com.ibm.icu:58.2.0-SNAPSHOT   0 30
org.eclipse.core.expressions-3.6.0.v20170207-1037.jar org.eclipse.platform:org.eclipse.core.expressions:3.6.0    0 24
org.eclipse.core.runtime-3.13.0.v20170207-1030.jar org.eclipse.platform:org.eclipse.core.runtime:3.13.0    0 23
org.eclipse.core.filesystem-1.7.0.v20170406-1337.jar org.eclipse.platform:org.eclipse.core.filesystem:1.7.0    0 24
org.eclipse.core.jobs-3.9.0.v20170322-0013.jar org.eclipse.platform:org.eclipse.core.jobs:3.9.0    0 24
org.eclipse.core.net-1.3.100.v20170516-0820.jar org.eclipse.platform:org.eclipse.core.net:1.3.100    0 24
org.eclipse.equinox.security-1.2.300.v20170505-1235.jar org.eclipse.platform:org.eclipse.equinox.security:1.2.300    0 22
org.eclipse.core.resources-3.12.0.v20170417-1558.jar org.eclipse.platform:org.eclipse.core.resources:3.12.0    0 24
org.eclipse.equinox.app-1.3.400.v20150715-1528.jar org.eclipse.platform:org.eclipse.equinox.app:1.3.400    0 31
org.eclipse.core.variables-3.4.0.v20170113-2056.jar org.eclipse.platform:org.eclipse.core.variables:3.4.0    0 24
org.eclipse.debug.core-3.11.0.v20170605-1534.jar org.eclipse.platform:org.eclipse.debug.core:3.11.0    0 23
org.eclipse.e4.core.commands-0.12.100.v20170513-0428.jar org.eclipse.platform:org.eclipse.e4.core.commands:0.12.100    0 24
org.eclipse.e4.core.di-1.6.100.v20170421-1418.jar org.eclipse.platform:org.eclipse.e4.core.di:1.6.100    0 24
javax.inject-1.0.0.v20091030.jar   0 14
org.eclipse.e4.core.contexts-1.6.0.v20170322-1144.jar org.eclipse.platform:org.eclipse.e4.core.contexts:1.6.0    0 22
org.eclipse.e4.core.services-2.1.0.v20170407-0928.jar cpe:/a:eclipse:eclipse_ide:2.1 org.eclipse.platform:org.eclipse.e4.core.services:2.1.0  Medium 2 Highest 28
org.eclipse.e4.core.di.annotations-1.6.0.v20170119-2002.jar org.eclipse.platform:org.eclipse.e4.core.di.annotations:1.6.0    0 22
org.eclipse.e4.core.di.extensions-0.15.0.v20170228-1728.jar org.eclipse.platform:org.eclipse.e4.core.di.extensions:0.15.0    0 22
org.eclipse.e4.core.di.extensions.supplier-0.15.0.v20170407-0928.jar org.eclipse.platform:org.eclipse.e4.core.di.extensions.supplier:0.15.0    0 26
org.eclipse.equinox.ds-1.5.0.v20170307-1429.jar cpe:/a:eclipse:eclipse_ide:1.5.0 org.eclipse.platform:org.eclipse.equinox.ds:1.5.0  Medium 2 Low 26
org.eclipse.e4.emf.xpath-0.2.0.v20160630-0728.jar org.eclipse.platform:org.eclipse.e4.emf.xpath:0.2.0    0 24
org.apache.commons.jxpath-1.3.0.v200911051830.jar   0 19
org.eclipse.emf.ecore-2.13.0.v20170609-0707.jar   0 20
org.eclipse.e4.ui.bindings-0.12.0.v20170312-2302.jar org.eclipse.platform:org.eclipse.e4.ui.bindings:0.12.0    0 24
org.eclipse.swt-3.106.0.v20170608-0516.jar org.eclipse.platform:org.eclipse.swt:3.106.0    0 16
org.eclipse.jface-3.13.0.v20170503-1507.jar org.eclipse.platform:org.eclipse.jface:3.13.0    0 21
org.eclipse.e4.ui.css.core-0.12.100.v20170526-1635.jar org.eclipse.platform:org.eclipse.e4.ui.css.core:0.12.100    0 24
org.eclipse.e4.ui.css.swt-0.13.0.v20170516-1617.jar org.eclipse.platform:org.eclipse.e4.ui.css.swt:0.13.0    0 24
org.eclipse.e4.ui.css.swt.theme-0.11.0.v20170312-2302.jar org.eclipse.platform:org.eclipse.e4.ui.css.swt.theme:0.11.0    0 28
org.eclipse.e4.ui.di-1.2.100.v20170414-1137.jar org.eclipse.platform:org.eclipse.e4.ui.di:1.2.100    0 26
org.eclipse.e4.ui.model.workbench-2.0.0.v20170228-1842.jar org.eclipse.platform:org.eclipse.e4.ui.model.workbench:2.0.0    0 24
org.eclipse.e4.ui.services-1.3.0.v20170307-2032.jar org.eclipse.platform:org.eclipse.e4.ui.services:1.3.0    0 28
org.eclipse.equinox.event-1.4.0.v20170105-1446.jar cpe:/a:event_list_project:event_list:1.4.0.v20170105 org.eclipse.platform:org.eclipse.equinox.event:1.4.0    0 Low 26
org.eclipse.e4.ui.widgets-1.2.0.v20160630-0736.jar cpe:/a:widgets_project:widgets:1.2.0.v20160630 org.eclipse.platform:org.eclipse.e4.ui.widgets:1.2.0  Medium 1 Low 24
org.eclipse.e4.ui.workbench-1.5.0.v20170412-0908.jar org.eclipse.platform:org.eclipse.e4.ui.workbench:1.5.0    0 28
org.eclipse.emf.ecore.xmi-2.13.0.v20170609-0707.jar   0 21
org.eclipse.emf.ecore.change-2.11.0.v20170609-0707.jar   0 21
org.eclipse.e4.ui.workbench.addons.swt-1.3.1.v20170319-1442.jar org.eclipse.platform:org.eclipse.e4.ui.workbench.addons.swt:1.3.1    0 24
org.eclipse.e4.ui.workbench.renderers.swt-0.14.100.v20170612-1255.jar org.eclipse.platform:org.eclipse.e4.ui.workbench.renderers.swt:0.14.100    0 24
org.eclipse.e4.ui.workbench.swt-0.14.100.v20170519-1601.jar org.eclipse.platform:org.eclipse.e4.ui.workbench.swt:0.14.100    0 28
org.eclipse.jface.databinding-1.8.100.v20170503-1507.jar org.eclipse.platform:org.eclipse.jface.databinding:1.8.100    0 24
org.eclipse.e4.ui.workbench3-0.14.0.v20160630-0740.jar org.eclipse.platform:org.eclipse.e4.ui.workbench3:0.14.0    0 23
org.eclipse.ecf-3.8.0.v20170104-0657.jar cpe:/a:eclipse:eclipse_ide:3.8.0.v20170104 Medium 1 Low 22
org.eclipse.ecf.identity-3.8.0.v20161203-2153.jar cpe:/a:eclipse:eclipse_ide:3.8.0.v20161203 Medium 1 Low 25
org.eclipse.equinox.concurrent-1.1.0.v20130327-1442.jar org.eclipse.platform:org.eclipse.equinox.concurrent:1.1.0    0 22
org.eclipse.ecf.filetransfer-5.0.0.v20160817-1024.jar cpe:/a:file-transfer:file_transfer:5.0.0.v20160817   0 Low 18
org.eclipse.ecf.provider.filetransfer-3.2.300.v20161203-1840.jar cpe:/a:eclipse:eclipse_ide:3.2.300.v20161203 Medium 2 Low 19
org.eclipse.ecf.provider.filetransfer.httpclient4-1.1.200.v20170314-0133.jar cpe:/a:eclipse:eclipse_ide:1.1.200.v20170314 Medium 2 Low 19
org.eclipse.emf.common-2.13.0.v20170609-0707.jar   0 21
org.eclipse.equinox.p2.core-2.4.100.v20160419-0834.jar cpe:/a:eclipse:eclipse_ide:2.0 org.eclipse.platform:org.eclipse.equinox.p2.core:2.4.100  Medium 2 Medium 26
org.eclipse.help-3.8.0.v20160823-1530.jar org.eclipse.platform:org.eclipse.help:3.8.0    0 23
org.eclipse.jdt.core-3.13.0.v20170516-1929.jar org.eclipse.jdt:org.eclipse.jdt.core:3.13.0    0 26
org.eclipse.text-3.6.100.v20170203-0814.jar org.eclipse.platform:org.eclipse.text:3.6.100    0 23
jdi.jar   0 9
org.eclipse.jdt.launching-3.9.0.v20170419-1235.jar org.eclipse.jdt:org.eclipse.jdt.launching:3.9.0    0 24
org.eclipse.swt.cocoa.macosx.x86_64-3.106.0.v20170608-0516.jar org.eclipse.platform:org.eclipse.swt.cocoa.macosx.x86_64:3.106.0    0 21
org.eclipse.ui-3.109.0.v20170411-1742.jar org.eclipse.platform:org.eclipse.ui:3.109.0    0 23
org.eclipse.ui.workbench-3.110.0.v20170612-1255.jar cpe:/a:eclipse:eclipse_ide:3.110.0 org.eclipse.platform:org.eclipse.ui.workbench:3.110.0  Medium 1 Low 27
org.eclipse.ui.forms-3.7.100.v20170517-1755.jar org.eclipse.platform:org.eclipse.ui.forms:3.7.100    0 23
org.eclipse.ui.navigator-3.7.0.v20170418-1342.jar org.eclipse.platform:org.eclipse.ui.navigator:3.7.0    0 24
org.eclipse.ui.views.log-1.2.100.v20170515-1458.jar cpe:/a:eclipse:eclipse_ide:1.2.100.v20170515 org.eclipse.platform:org.eclipse.ui.views.log:1.2.100  Medium 2 Low 24
org.jboss.tools.foundation.checkup-1.4.1.v20170821-1410.jar org.jboss.tools.foundation.plugins:org.jboss.tools.foundation.checkup:1.4.1-SNAPSHOT   0 24
org.jboss.tools.foundation.core-1.4.2-SNAPSHOT.jar org.jboss.tools.foundation.plugins:org.jboss.tools.foundation.core:1.4.2-SNAPSHOT   0 22
org.jboss.tools.foundation.ui-1.4.1.v20170908-0905.jar cpe:/a:form_tools:form_tools:1.4.1.v20170908 org.jboss.tools.foundation.plugins:org.jboss.tools.foundation.ui:1.4.1-SNAPSHOT   0 Low 24
org.jboss.tools.runtime.core-3.4.0-SNAPSHOT.jar org.jboss.tools.runtime.plugins:org.jboss.tools.runtime.core:3.4.0-SNAPSHOT   0 21
org.apache.commons.compress-1.6.0.v201310281400.jar cpe:/a:apache:commons-compress:1.6.0.v20131028   0 Low 33
com.ibm.icu.base-58.2.0.v20170418-1837.jar org.eclipse.orbit.bundles:com.ibm.icu.base:58.2.0-SNAPSHOT   0 30
org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar org.eclipse.platform:org.eclipse.swt.win32.win32.x86:3.106.0    0 21
org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar org.eclipse.platform:org.eclipse.swt.win32.win32.x86_64:3.106.0    0 21
org.eclipse.swt.gtk.linux.x86-3.106.0.v20170608-0516.jar org.eclipse.platform:org.eclipse.swt.gtk.linux.x86:3.106.0    0 21
org.eclipse.swt.gtk.linux.x86_64-3.106.0.v20170608-0516.jar org.eclipse.platform:org.eclipse.swt.gtk.linux.x86_64:3.106.0    0 21
org.eclipse.core.resources-3.12.0.v20170417-1558.jar: resources-ant.jar   0 8
org.eclipse.jdt.launching-3.9.0.v20170419-1235.jar: launchingsupport.jar   0 8
org.jboss.tools.foundation.ui-1.4.1.v20170908-0905.jar: magicfile4j-1.0.0-Beta1.jar org.jboss.tools:magicfile4j:1.0.0-Beta1   0 23
org.eclipse.jdt.core-3.13.0.v20170516-1929.jar: jdtCompilerAdapter.jar   0 7
org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-awt-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-gdip-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-wgl-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-xulrunner-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-awt-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-gdip-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-webkit-win32-4757.dll cpe:/a:webkit:webkit:32.4757 High 4 Low 4
org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-wgl-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-win32-4757.dll   0 4
org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-xulrunner-win32-4757.dll   0 4
org.apache.felix.scr-2.0.10.v20170501-2007.jar\META-INF/maven/org.eclipse.orbit.bundles/org.apache.felix.scr/pom.xml org.eclipse.orbit.bundles:org.apache.felix.scr:2.0.10-SNAPSHOT   0 12

Dependencies

org.eclipse.osgi-3.12.0.v20170512-1932.jar

Description: %systemBundle

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.osgi\3.12.0.v20170512-1932\org.eclipse.osgi-3.12.0.v20170512-1932.jar
MD5: 440a6854c6a7fd2351b18ca8bfa763a1
SHA1: d06b54d6947e5956694deae4afec4538711a7d08
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.w3c.css.sac-1.3.1.v200903091627.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.w3c.css.sac\1.3.1.v200903091627\org.w3c.css.sac-1.3.1.v200903091627.jar
MD5: 72902273245b11d21039de8c10398844
SHA1: 8a9501900c6ed5d6da577bf9e947011319c8e512
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.apache.batik.css-1.8.0.v20170214-1941.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.batik.css\1.8.0.v20170214-1941\org.apache.batik.css-1.8.0.v20170214-1941.jar
MD5: b07b0349e8049df75679959a9e8a725b
SHA1: d9c5280f7e91172466da39e8466ba220a977ea9c
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • cpe: cpe:/a:apache:batik:1.8   Confidence:Highest   
  • maven: org.eclipse.orbit.bundles:org.apache.batik.css:1.8.0-SNAPSHOT   Confidence:High

CVE-2017-5662  

Severity: High
CVSS Score: 7.9 (AV:N/AC:M/Au:S/C:C/I:N/A:C)
CWE: CWE-611 Improper Restriction of XML External Entity Reference ('XXE')

In Apache Batik before 1.9, files lying on the filesystem of the server which uses batik can be revealed to arbitrary users who send maliciously formed SVG files. The file types that can be shown depend on the user context in which the exploitable application is running. If the user is root a full compromise of the server - including confidential or sensitive files - would be possible. XXE can also be used to attack the availability of the server via denial of service as the references within a xml document can trivially trigger an amplification attack.

Vulnerable Software & Versions:

org.apache.commons.codec-1.9.0.v20170208-1614.jar

Description: The Apache Commons Codec package contains simple encoder and decoders for various formats such as Base64 and Hexadecimal. In addition to these widely used encoders and decoders, the codec package also maintains a collection of phonetic encoding utilities.

License:

http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.commons.codec\1.9.0.v20170208-1614\org.apache.commons.codec-1.9.0.v20170208-1614.jar
MD5: c60100e0054e38097a3a3702738d38ed
SHA1: 319daace7828d342de91484e47e2fa0dbd08e148
Referenced In Projects/Scopes:
  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • maven: org.eclipse.orbit.bundles:org.apache.commons.codec:1.9.0-SNAPSHOT   Confidence:High

org.eclipse.osgi.services-3.6.0.v20170228-1906.jar

Description: %osgiServicesDes

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.osgi.services\3.6.0.v20170228-1906\org.eclipse.osgi.services-3.6.0.v20170228-1906.jar
MD5: 8f1ffb535cee3825b2da1367931beb29
SHA1: 112bb4fc7f05e766af565c14163e7fe957823e49
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.apache.felix.scr-2.0.10.v20170501-2007.jar

Description: Implementation of the Declarative Services specification 1.3

License:

http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.felix.scr\2.0.10.v20170501-2007\org.apache.felix.scr-2.0.10.v20170501-2007.jar
MD5: dc8f78b63106f498873a842376b615ed
SHA1: 6e72ace6366c3aff0fb52bba8ad02f85b6cd82dc
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.osgi.util-3.4.0.v20170111-1608.jar

Description: %osgiUtilDes

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.osgi.util\3.4.0.v20170111-1608\org.eclipse.osgi.util-3.4.0.v20170111-1608.jar
MD5: df2ddb1699e95b60ce6ee17cde9b3c51
SHA1: b3939a872c43a4b1d3aae07e42f51bf848606e93
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.apache.commons.logging-1.1.1.v201101211721.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.commons.logging\1.1.1.v201101211721\org.apache.commons.logging-1.1.1.v201101211721.jar
MD5: e1d5f3260cc59b73227929ba4e775e84
SHA1: a9802e0f122ba160d3d5ceba9793b83a8db329a4
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.apache.httpcomponents.httpcore-4.4.6.v20170210-0925.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.httpcomponents.httpcore\4.4.6.v20170210-0925\org.apache.httpcomponents.httpcore-4.4.6.v20170210-0925.jar
MD5: ab907ef09fd266d99b3019604c237145
SHA1: f4eb28b2972097bbb86bf27ad84df4ecb7dfe7b2
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • maven: org.eclipse.orbit.bundles:org.apache.httpcomponents.httpcore:4.4.6-SNAPSHOT   Confidence:High

org.apache.httpcomponents.httpclient-4.5.2.v20170210-0925.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.httpcomponents.httpclient\4.5.2.v20170210-0925\org.apache.httpcomponents.httpclient-4.5.2.v20170210-0925.jar
MD5: 74d0a8407c8ff35a5d9d96baa38be405
SHA1: 3e15bc269e20bacabbe6dfe39e8dc8507da9025f
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • maven: org.eclipse.orbit.bundles:org.apache.httpcomponents.httpclient:4.5.2-SNAPSHOT   Confidence:High
  • cpe: cpe:/a:apache:httpclient:4.5.2.v20170210   Confidence:Low   

org.eclipse.core.commands-3.9.0.v20170530-1048.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.commands\3.9.0.v20170530-1048\org.eclipse.core.commands-3.9.0.v20170530-1048.jar
MD5: bc93beda5ee4a2e45e76338d274889ac
SHA1: 89ab90ff4c9805ec45ea6bcb913323648c3d92d5
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.equinox.common-3.9.0.v20170207-1454.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.common\3.9.0.v20170207-1454\org.eclipse.equinox.common-3.9.0.v20170207-1454.jar
MD5: d770eda2f43872ba17d6f0140ca0a42c
SHA1: a22125896ff8e25ce913371f54898af733953ecb
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.core.contenttype-3.6.0.v20170207-1037.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.contenttype\3.6.0.v20170207-1037\org.eclipse.core.contenttype-3.6.0.v20170207-1037.jar
MD5: 1de51a41302a7ab315d3d0f176e9f057
SHA1: 26b6171708e9c737bfe28382cea18fdd8a432ceb
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.equinox.preferences-3.7.0.v20170126-2132.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.preferences\3.7.0.v20170126-2132\org.eclipse.equinox.preferences-3.7.0.v20170126-2132.jar
MD5: 4306007fe9089b051f8447530d45ea63
SHA1: 78f9996fe3eafa560a09eee083c22154c689ffe1
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.equinox.registry-3.7.0.v20170222-1344.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.registry\3.7.0.v20170222-1344\org.eclipse.equinox.registry-3.7.0.v20170222-1344.jar
MD5: 87969fbfb35cee33c04d35761f0e50f0
SHA1: 9874e42c373d8f90338dbb9a38dab1dd81efffb5
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.core.databinding-1.6.100.v20170515-1119.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.databinding\1.6.100.v20170515-1119\org.eclipse.core.databinding-1.6.100.v20170515-1119.jar
MD5: 8af3fac279dc030ace970a9ed9fa13c9
SHA1: 81a5f8bb3a9bf5a845e558646d3401aa9a004fb8
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.core.databinding.observable-1.6.100.v20170515-1119.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.databinding.observable\1.6.100.v20170515-1119\org.eclipse.core.databinding.observable-1.6.100.v20170515-1119.jar
MD5: 229bc89c66c43a7e25fbcc120283e1f7
SHA1: a5dcfdd268cb19462aac4fcf2d2f12106da07e1b
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.core.databinding.property-1.6.100.v20170515-1119.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.databinding.property\1.6.100.v20170515-1119\org.eclipse.core.databinding.property-1.6.100.v20170515-1119.jar
MD5: 4838da9125c28424eb8646656703fcc3
SHA1: d1b4c3d450ce2902b273c7a88f0552f0dbea8613
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

com.ibm.icu-58.2.0.v20170418-1837.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\com.ibm.icu\58.2.0.v20170418-1837\com.ibm.icu-58.2.0.v20170418-1837.jar
MD5: 077cc6241f12131caaf87893ecc18328
SHA1: eee7e3784800d519053dc08d69273354a033726a
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • maven: org.eclipse.orbit.bundles:com.ibm.icu:58.2.0-SNAPSHOT   Confidence:High

org.eclipse.core.expressions-3.6.0.v20170207-1037.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.expressions\3.6.0.v20170207-1037\org.eclipse.core.expressions-3.6.0.v20170207-1037.jar
MD5: b8045b5e1cffec4e64b4282fe9ce409e
SHA1: d73bdd061bb36239e59015f917a25710e16d1cf9
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.core.runtime-3.13.0.v20170207-1030.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.runtime\3.13.0.v20170207-1030\org.eclipse.core.runtime-3.13.0.v20170207-1030.jar
MD5: a00b0766d631bcaf972fb981f5646f29
SHA1: 5a1b57e5c1753858b3ff36876014a547ee608129
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.core.filesystem-1.7.0.v20170406-1337.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.filesystem\1.7.0.v20170406-1337\org.eclipse.core.filesystem-1.7.0.v20170406-1337.jar
MD5: 5744964700d525ef06c890ab02dbf423
SHA1: 2e9b5c5b22d5a041c6151dd3f88bbad7311188c8
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.core.jobs-3.9.0.v20170322-0013.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.jobs\3.9.0.v20170322-0013\org.eclipse.core.jobs-3.9.0.v20170322-0013.jar
MD5: 230b8880248c056c3f7d6594ca5729d8
SHA1: 591a398580d6dfecda2ca18eda1a176c79875b7c
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.core.net-1.3.100.v20170516-0820.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.net\1.3.100.v20170516-0820\org.eclipse.core.net-1.3.100.v20170516-0820.jar
MD5: ff28ab5ac4f51348051f1708a36038ca
SHA1: 60a0b8927d017917546a76f091636da4da421dc9
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.equinox.security-1.2.300.v20170505-1235.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.security\1.2.300.v20170505-1235\org.eclipse.equinox.security-1.2.300.v20170505-1235.jar
MD5: 3c3c1c1f3e7be8ff5ffaea1a9f19945f
SHA1: 34ff7fb0878ee4297a6e99e5223d1f74d87d9c8d
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.core.resources-3.12.0.v20170417-1558.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.resources\3.12.0.v20170417-1558\org.eclipse.core.resources-3.12.0.v20170417-1558.jar
MD5: 2e7af9f5c4b98bfdb01913e904f3c276
SHA1: be793d60b94223ed8cd371f0b52576530a1977e1
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.equinox.app-1.3.400.v20150715-1528.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.app\1.3.400.v20150715-1528\org.eclipse.equinox.app-1.3.400.v20150715-1528.jar
MD5: 33d2a35dcf3cf48509cbe3ac70e1c548
SHA1: 04c01f677e982499789ffa78b628ea67693db949
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.core.variables-3.4.0.v20170113-2056.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.variables\3.4.0.v20170113-2056\org.eclipse.core.variables-3.4.0.v20170113-2056.jar
MD5: 6dd3cb8386e77d3f68c939dda74ba383
SHA1: eacfbd49b84a2e78f235793792d887ef2976977e
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.debug.core-3.11.0.v20170605-1534.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.debug.core\3.11.0.v20170605-1534\org.eclipse.debug.core-3.11.0.v20170605-1534.jar
MD5: aad939f092248c6a326c4b6c74f29b6d
SHA1: 4e930adf54e02bb9401683fed09cb81339797c05
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.e4.core.commands-0.12.100.v20170513-0428.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.core.commands\0.12.100.v20170513-0428\org.eclipse.e4.core.commands-0.12.100.v20170513-0428.jar
MD5: 693c0d0949b95a1c3020cc278fec7120
SHA1: 31cbcd68493f7e3a37dba0b2b8d1d5c42e254926
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.core.di-1.6.100.v20170421-1418.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.core.di\1.6.100.v20170421-1418\org.eclipse.e4.core.di-1.6.100.v20170421-1418.jar
MD5: 319482aedc4640787c2e44d4de6f325c
SHA1: 650ac92c831c224d7d4eada5fe744ef53575761e
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

javax.inject-1.0.0.v20091030.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\javax.inject\1.0.0.v20091030\javax.inject-1.0.0.v20091030.jar
MD5: 508774113f4ecc361d7a7ec5dc93c737
SHA1: bf39840bc3bc7fa50a0d5ab4fea74bc00e89f952
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • None

org.eclipse.e4.core.contexts-1.6.0.v20170322-1144.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.core.contexts\1.6.0.v20170322-1144\org.eclipse.e4.core.contexts-1.6.0.v20170322-1144.jar
MD5: 720b268fffc24a2054ac3cb837c1b815
SHA1: 83e770014f1be890dff09b17b0d7b2343c3867f4
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.e4.core.services-2.1.0.v20170407-0928.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.core.services\2.1.0.v20170407-0928\org.eclipse.e4.core.services-2.1.0.v20170407-0928.jar
MD5: ae3bd320757837693015bc62c183a74c
SHA1: 42c86c2ee343d33e2f1d9577e8181357f5fc733a
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

CVE-2010-4647  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) help/index.jsp or (2) help/advanced/content.jsp.

Vulnerable Software & Versions: (show all)

org.eclipse.e4.core.di.annotations-1.6.0.v20170119-2002.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.core.di.annotations\1.6.0.v20170119-2002\org.eclipse.e4.core.di.annotations-1.6.0.v20170119-2002.jar
MD5: bab3a10e064b5e61b2225afe32857cb6
SHA1: 433c70a9819c34bb3e3c4d3f01e863ce7a2589bf
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.e4.core.di.extensions-0.15.0.v20170228-1728.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.core.di.extensions\0.15.0.v20170228-1728\org.eclipse.e4.core.di.extensions-0.15.0.v20170228-1728.jar
MD5: 564dad3e12b6c8461b055e36c0f7324c
SHA1: 4548e11c3e45f374a9e22e29226df0b331a0efd0
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.core.di.extensions.supplier-0.15.0.v20170407-0928.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.core.di.extensions.supplier\0.15.0.v20170407-0928\org.eclipse.e4.core.di.extensions.supplier-0.15.0.v20170407-0928.jar
MD5: 24cf82360f4130bb1e6110c5b6acb06a
SHA1: c99b80204d4d8b0e2ceafebd14d5b1742d8501eb
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.equinox.ds-1.5.0.v20170307-1429.jar

Description: This bundle provides support for OSGi Declarative Services

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.ds\1.5.0.v20170307-1429\org.eclipse.equinox.ds-1.5.0.v20170307-1429.jar
MD5: fac7aeac4dffbd8a94c2a2dd8acaf409
SHA1: 61527aafdd87ce3dcfca0c75b940ce2f46bcfdfa
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

CVE-2010-4647  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) help/index.jsp or (2) help/advanced/content.jsp.

Vulnerable Software & Versions: (show all)

org.eclipse.e4.emf.xpath-0.2.0.v20160630-0728.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.emf.xpath\0.2.0.v20160630-0728\org.eclipse.e4.emf.xpath-0.2.0.v20160630-0728.jar
MD5: 59d7a2bbfa1d883f9fdb8541a05979a3
SHA1: e3b2ae65ecc36aa41ace45ae82e985506b637f76
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.apache.commons.jxpath-1.3.0.v200911051830.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.commons.jxpath\1.3.0.v200911051830\org.apache.commons.jxpath-1.3.0.v200911051830.jar
MD5: d24c67043830efac0f7d4180310a279c
SHA1: f20b24af69f023a6247e624b0d06c206f694b3f4
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.emf.ecore-2.13.0.v20170609-0707.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.emf.ecore\2.13.0.v20170609-0707\org.eclipse.emf.ecore-2.13.0.v20170609-0707.jar
MD5: 4d6b36200e5926601fc3cb6e5de8f332
SHA1: 40ab9af6ecd1b4ef7050e989e770b3f33dac2600
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.e4.ui.bindings-0.12.0.v20170312-2302.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.bindings\0.12.0.v20170312-2302\org.eclipse.e4.ui.bindings-0.12.0.v20170312-2302.jar
MD5: e57d25657170a6b77c04f838251f7a3e
SHA1: b17a671cbe2163a0b3c427f2d5a4da26dfed8570
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.swt-3.106.0.v20170608-0516.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt\3.106.0.v20170608-0516\org.eclipse.swt-3.106.0.v20170608-0516.jar
MD5: 100c4426934e459a604a7eff83e89b82
SHA1: 8982cff510d6cab99bdf7048b50833c8f5e9549b
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.jface-3.13.0.v20170503-1507.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.jface\3.13.0.v20170503-1507\org.eclipse.jface-3.13.0.v20170503-1507.jar
MD5: 701441fd6ccf1f35b93c0624c9c6d369
SHA1: f2ff2ad7d03ba8f99603752fda56fac989e5d433
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.css.core-0.12.100.v20170526-1635.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.css.core\0.12.100.v20170526-1635\org.eclipse.e4.ui.css.core-0.12.100.v20170526-1635.jar
MD5: 3fda3286719f6345751a9b7d8337bec2
SHA1: 74fb8ca5f0be1f4a2b6447192fec9c267526a92c
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.css.swt-0.13.0.v20170516-1617.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.css.swt\0.13.0.v20170516-1617\org.eclipse.e4.ui.css.swt-0.13.0.v20170516-1617.jar
MD5: a4599d56d837c03247ea5191d9d5c3ac
SHA1: b9b2a43d8b9b7e547353478a4825aa2308637d63
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.css.swt.theme-0.11.0.v20170312-2302.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.css.swt.theme\0.11.0.v20170312-2302\org.eclipse.e4.ui.css.swt.theme-0.11.0.v20170312-2302.jar
MD5: 04d762e7519abb6776439e18a23321e5
SHA1: a0fb9813b59a14caf127e46002fc5bc00702200c
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.di-1.2.100.v20170414-1137.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.di\1.2.100.v20170414-1137\org.eclipse.e4.ui.di-1.2.100.v20170414-1137.jar
MD5: 797e3f95b695886c1171be5d9a73ef3b
SHA1: 6f68d4c83dc11f6eb18b2ade8e53c4b5bb1a132c
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.model.workbench-2.0.0.v20170228-1842.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.model.workbench\2.0.0.v20170228-1842\org.eclipse.e4.ui.model.workbench-2.0.0.v20170228-1842.jar
MD5: 528cff1b0213d042b9ed643712c54b65
SHA1: 227f8c9197379f44386443033f4373c16483d94f
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.services-1.3.0.v20170307-2032.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.services\1.3.0.v20170307-2032\org.eclipse.e4.ui.services-1.3.0.v20170307-2032.jar
MD5: 6d43b4f25c2e96607e62e05a4f271e04
SHA1: 48169dde261bae7dcaea4317183609f468d62b17
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.equinox.event-1.4.0.v20170105-1446.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.event\1.4.0.v20170105-1446\org.eclipse.equinox.event-1.4.0.v20170105-1446.jar
MD5: 791dd49aa088151fa3293f1c0a1fc9a7
SHA1: a51e598c1ab7fa5f4f7ab1add15c62dacd98b367
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.widgets-1.2.0.v20160630-0736.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.widgets\1.2.0.v20160630-0736\org.eclipse.e4.ui.widgets-1.2.0.v20160630-0736.jar
MD5: 428bd26f1acf78bf9e3c5fe07d45a47e
SHA1: 3b861665492fa1a2d3a1be4dd9a48864c5792481
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

CVE-2015-6737  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Cross-site scripting (XSS) vulnerability in the Widgets extension for MediaWiki allows remote attackers to inject arbitrary web script or HTML via vectors involving base64 encoded content.

Vulnerable Software & Versions:

org.eclipse.e4.ui.workbench-1.5.0.v20170412-0908.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.workbench\1.5.0.v20170412-0908\org.eclipse.e4.ui.workbench-1.5.0.v20170412-0908.jar
MD5: de5f4d25e16f5aaff72756ec3a56fd74
SHA1: 8a98c575709387f4dae6f2f1bf0911e83cef8b11
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.emf.ecore.xmi-2.13.0.v20170609-0707.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.emf.ecore.xmi\2.13.0.v20170609-0707\org.eclipse.emf.ecore.xmi-2.13.0.v20170609-0707.jar
MD5: a7e16edca16ecfd3fb1c8672c9ac60de
SHA1: 7423df10ee39f8d99f8dc41f5af3006b389b43c9
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.emf.ecore.change-2.11.0.v20170609-0707.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.emf.ecore.change\2.11.0.v20170609-0707\org.eclipse.emf.ecore.change-2.11.0.v20170609-0707.jar
MD5: 36da1b6abc4142c1d84275406f6cf7cc
SHA1: 9253f073f8338609f8e718cf1f16f91e0ef609b0
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.e4.ui.workbench.addons.swt-1.3.1.v20170319-1442.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.workbench.addons.swt\1.3.1.v20170319-1442\org.eclipse.e4.ui.workbench.addons.swt-1.3.1.v20170319-1442.jar
MD5: b9b1ee2c7529d0fac7986fa26db70eb4
SHA1: 8082eaf82f94401f147d157f29564f20411dce1c
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.workbench.renderers.swt-0.14.100.v20170612-1255.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.workbench.renderers.swt\0.14.100.v20170612-1255\org.eclipse.e4.ui.workbench.renderers.swt-0.14.100.v20170612-1255.jar
MD5: 9bbaa9de75d32cca3504aa7b57085efa
SHA1: be6b82db6d9dbf44582779de9392cdeca5cc73e6
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.workbench.swt-0.14.100.v20170519-1601.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.workbench.swt\0.14.100.v20170519-1601\org.eclipse.e4.ui.workbench.swt-0.14.100.v20170519-1601.jar
MD5: 14277c5f4be9ec995d076a589a727ea3
SHA1: 259cd6f78c7d196742ce0c946fbb10c0f2f5b76a
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.jface.databinding-1.8.100.v20170503-1507.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.jface.databinding\1.8.100.v20170503-1507\org.eclipse.jface.databinding-1.8.100.v20170503-1507.jar
MD5: cff6da48e9ecd7e29ad101876d038fb9
SHA1: 34c41ecafdbcb4175854b841d095f12d0de533b0
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.e4.ui.workbench3-0.14.0.v20160630-0740.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.e4.ui.workbench3\0.14.0.v20160630-0740\org.eclipse.e4.ui.workbench3-0.14.0.v20160630-0740.jar
MD5: 19fb2de9ff4eaf051501dfb47e4fed55
SHA1: d3d90965946cf723e7321eaf754259a487295fd5
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.ecf-3.8.0.v20170104-0657.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ecf\3.8.0.v20170104-0657\org.eclipse.ecf-3.8.0.v20170104-0657.jar
MD5: 17d99d1f8feaab7ba9c121bdbb6b172a
SHA1: 5bcc054e126c9438ea4fc76d7744e5566290d89b
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

org.eclipse.ecf.identity-3.8.0.v20161203-2153.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ecf.identity\3.8.0.v20161203-2153\org.eclipse.ecf.identity-3.8.0.v20161203-2153.jar
MD5: b49e2edbf0e80f6a06c445af620fc3d7
SHA1: 731aab22f8887973f46fb636a28df9c3ea0aff06
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

org.eclipse.equinox.concurrent-1.1.0.v20130327-1442.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.concurrent\1.1.0.v20130327-1442\org.eclipse.equinox.concurrent-1.1.0.v20130327-1442.jar
MD5: b4f18eac43008648e2f222867d1587b1
SHA1: be72cdfd3f44ff6c2ab84a13c56672ed848f75f5
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.ecf.filetransfer-5.0.0.v20160817-1024.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ecf.filetransfer\5.0.0.v20160817-1024\org.eclipse.ecf.filetransfer-5.0.0.v20160817-1024.jar
MD5: d3d89a8f6dce52973aee0b2d6f3191ce
SHA1: e6f30d6cc08c39c687a23e9dfa61faaaa0923629
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • cpe: cpe:/a:file-transfer:file_transfer:5.0.0.v20160817   Confidence:Low   

org.eclipse.ecf.provider.filetransfer-3.2.300.v20161203-1840.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ecf.provider.filetransfer\3.2.300.v20161203-1840\org.eclipse.ecf.provider.filetransfer-3.2.300.v20161203-1840.jar
MD5: 4dfcefcad00261479f969474714091ee
SHA1: 6c98b21f2ce3f0d5c0f99c9ac3e8331ca057a5fe
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

CVE-2010-4647  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) help/index.jsp or (2) help/advanced/content.jsp.

Vulnerable Software & Versions: (show all)

org.eclipse.ecf.provider.filetransfer.httpclient4-1.1.200.v20170314-0133.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ecf.provider.filetransfer.httpclient4\1.1.200.v20170314-0133\org.eclipse.ecf.provider.filetransfer.httpclient4-1.1.200.v20170314-0133.jar
MD5: 215335f021468cfa5d692b8da1d4763d
SHA1: 2cbe416d41304ca048858d36d0a24555f337b107
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

CVE-2010-4647  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) help/index.jsp or (2) help/advanced/content.jsp.

Vulnerable Software & Versions: (show all)

org.eclipse.emf.common-2.13.0.v20170609-0707.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.emf.common\2.13.0.v20170609-0707\org.eclipse.emf.common-2.13.0.v20170609-0707.jar
MD5: 957296ada87969f9c209102b373b4ce9
SHA1: d0ff23fe0e263ad995edc3b41f417be8bd1558d9
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.equinox.p2.core-2.4.100.v20160419-0834.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.equinox.p2.core\2.4.100.v20160419-0834\org.eclipse.equinox.p2.core-2.4.100.v20160419-0834.jar
MD5: fedcd2ded80f7e26e8ebb2fdd4054703
SHA1: b881c588447d199ae37b9a1d4d36fcb0faac0469
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

CVE-2010-4647  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) help/index.jsp or (2) help/advanced/content.jsp.

Vulnerable Software & Versions: (show all)

org.eclipse.help-3.8.0.v20160823-1530.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.help\3.8.0.v20160823-1530\org.eclipse.help-3.8.0.v20160823-1530.jar
MD5: 68d45dc264e05b290063921b59634c61
SHA1: 11694a994ed74a64114761bd75a67a19e73c638d
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.jdt.core-3.13.0.v20170516-1929.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.jdt.core\3.13.0.v20170516-1929\org.eclipse.jdt.core-3.13.0.v20170516-1929.jar
MD5: 1c6ca52a706a9f33bcee1d701ddbf8eb
SHA1: e3f00006d34a4064fb8802911d6bae3d0601836d
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.text-3.6.100.v20170203-0814.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.text\3.6.100.v20170203-0814\org.eclipse.text-3.6.100.v20170203-0814.jar
MD5: d820ec630a02e69c88250a89f2796955
SHA1: b2dd42e7448ba14e38577650b1a377021a9b8fec
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

jdi.jar

File Path: C:\Users\JeffMAURY\.m2\repository\.cache\tycho\org.eclipse.jdt.debug-3.11.0.v20170510-1451.jar\jdi.jar
MD5: 5a14e92c7e8816d15cdfcfe53dc24f88
SHA1: 95ceff50790e30ae6bc7722e231e323579453f72
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • None

org.eclipse.jdt.launching-3.9.0.v20170419-1235.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.jdt.launching\3.9.0.v20170419-1235\org.eclipse.jdt.launching-3.9.0.v20170419-1235.jar
MD5: 69e90e4cadc887ebf84389778734a42d
SHA1: 0d5259a03bf9b926e3c9ef2e18bfe9d95d37a800
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

org.eclipse.swt.cocoa.macosx.x86_64-3.106.0.v20170608-0516.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.cocoa.macosx.x86_64\3.106.0.v20170608-0516\org.eclipse.swt.cocoa.macosx.x86_64-3.106.0.v20170608-0516.jar
MD5: 10eb070db93b69911a2cbcc2deb194fe
SHA1: 33149e5edae38f71e88ee1fd1a2781375121d164
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.ui-3.109.0.v20170411-1742.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ui\3.109.0.v20170411-1742\org.eclipse.ui-3.109.0.v20170411-1742.jar
MD5: a7d9ff5debb6a7572b05e3667e4b126e
SHA1: 579a13a0838e9bbdef70f6a71fe6ba1374413933
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.ui.workbench-3.110.0.v20170612-1255.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ui.workbench\3.110.0.v20170612-1255\org.eclipse.ui.workbench-3.110.0.v20170612-1255.jar
MD5: 726a0af9426e3384d8ba0bdbb07ec18d
SHA1: f98d9fedca57c9374d6335e7e27ffd45ce77534d
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

org.eclipse.ui.forms-3.7.100.v20170517-1755.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ui.forms\3.7.100.v20170517-1755\org.eclipse.ui.forms-3.7.100.v20170517-1755.jar
MD5: 4a30cd17af9d96034cde857341b87e0c
SHA1: 36b2103551abaa46f6270731a00bbb75662c77e9
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.ui.navigator-3.7.0.v20170418-1342.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ui.navigator\3.7.0.v20170418-1342\org.eclipse.ui.navigator-3.7.0.v20170418-1342.jar
MD5: 7cb4ac3309cf6c9e138d3808f99e8548
SHA1: f9acec72159c23a4ec1151bdbab002e2a8fbc837
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.ui.views.log-1.2.100.v20170515-1458.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.ui.views.log\1.2.100.v20170515-1458\org.eclipse.ui.views.log-1.2.100.v20170515-1458.jar
MD5: d8378d8ddedf3dd300de31263cbdeabb
SHA1: 05171824bc97115c95c649536b42d094b8df15cd
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

CVE-2008-7271  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE, possibly 3.3.2, allow remote attackers to inject arbitrary web script or HTML via (1) the searchWord parameter to help/advanced/searchView.jsp or (2) the workingSet parameter in an add action to help/advanced/workingSetManager.jsp, a different issue than CVE-2010-4647.

Vulnerable Software & Versions: (show all)

CVE-2010-4647  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) help/index.jsp or (2) help/advanced/content.jsp.

Vulnerable Software & Versions: (show all)

org.jboss.tools.foundation.checkup-1.4.1.v20170821-1410.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.jboss.tools.foundation.checkup\1.4.1.v20170821-1410\org.jboss.tools.foundation.checkup-1.4.1.v20170821-1410.jar
MD5: a60e6f50ce30374c30d1c076e9ec18ce
SHA1: b104d5665cbcd88389fbc4bd8a93c058d31ef51d
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • maven: org.jboss.tools.foundation.plugins:org.jboss.tools.foundation.checkup:1.4.1-SNAPSHOT   Confidence:High

org.jboss.tools.foundation.core-1.4.2-SNAPSHOT.jar

File Path: C:\Users\JeffMAURY\.m2\repository\org\jboss\tools\foundation\plugins\org.jboss.tools.foundation.core\1.4.2-SNAPSHOT\org.jboss.tools.foundation.core-1.4.2-SNAPSHOT.jar
MD5: 997b7d7eecfa5c81259255a129001209
SHA1: 1ae025de1417ffc49f22131487c6a7319983f26a
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • maven: org.jboss.tools.foundation.plugins:org.jboss.tools.foundation.core:1.4.2-SNAPSHOT   Confidence:High

org.jboss.tools.foundation.ui-1.4.1.v20170908-0905.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.jboss.tools.foundation.ui\1.4.1.v20170908-0905\org.jboss.tools.foundation.ui-1.4.1.v20170908-0905.jar
MD5: b7131a185e186a693c7ac1dc95f4d6c6
SHA1: 5722e635c54789460cb70e83f46e73086f111dbe
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • cpe: cpe:/a:form_tools:form_tools:1.4.1.v20170908   Confidence:Low   
  • maven: org.jboss.tools.foundation.plugins:org.jboss.tools.foundation.ui:1.4.1-SNAPSHOT   Confidence:High

org.jboss.tools.runtime.core-3.4.0-SNAPSHOT.jar

File Path: C:\work\tmp\jbosstools-base\runtime\plugins\org.jboss.tools.runtime.core\target\org.jboss.tools.runtime.core-3.4.0-SNAPSHOT.jar
MD5: 9392d5153325534ea3cb6ea91346ae73
SHA1: 70e8a3fc161242f6dad5967b8fa6a5f07fc78910
Referenced In Project/Scope: org.jboss.tools.runtime.ui:provided

Identifiers

  • maven: org.jboss.tools.runtime.plugins:org.jboss.tools.runtime.core:3.4.0-SNAPSHOT   Confidence:High

org.apache.commons.compress-1.6.0.v201310281400.jar

Description: Apache Commons Compress software defines an API for working with compression and archive formats.These include: bzip2, gzip, pack200, xz and ar, cpio, jar, tar, zip, dump.

License:

http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.commons.compress\1.6.0.v201310281400\org.apache.commons.compress-1.6.0.v201310281400.jar
MD5: 261949eddbf0f3f3e1362daa62b41f86
SHA1: 21ef58bbe171557c688793a91cc90627a2195c54
Referenced In Projects/Scopes:
  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • cpe: cpe:/a:apache:commons-compress:1.6.0.v20131028   Confidence:Low   

com.ibm.icu.base-58.2.0.v20170418-1837.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\com.ibm.icu.base\58.2.0.v20170418-1837\com.ibm.icu.base-58.2.0.v20170418-1837.jar
MD5: d4632920b223f46e0c5e7656485f831f
SHA1: 5658dbc6bdebfe9669fd40d2f116f374d0f6cdbf
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • maven: org.eclipse.orbit.bundles:com.ibm.icu.base:58.2.0-SNAPSHOT   Confidence:High

org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar
MD5: 981dc0e5b9aa4425f2fd1d22c9761b57
SHA1: e4626281aa4d2c1f931af6bba8834c224916ef5f
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86_64\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar
MD5: f017ceb91ec6d6e4844d62bdcfecf005
SHA1: dffa8e99ec3859cdffb0d97c3fec94c1e1601107
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.swt.gtk.linux.x86-3.106.0.v20170608-0516.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.gtk.linux.x86\3.106.0.v20170608-0516\org.eclipse.swt.gtk.linux.x86-3.106.0.v20170608-0516.jar
MD5: 4e813556bc37548537c1119dc7dc6cf4
SHA1: 117c9f4a5674daa3500034620bf3b3f42a90df86
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.swt.gtk.linux.x86_64-3.106.0.v20170608-0516.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.gtk.linux.x86_64\3.106.0.v20170608-0516\org.eclipse.swt.gtk.linux.x86_64-3.106.0.v20170608-0516.jar
MD5: ac91480bac75b3ebb00e3188a3d7b4ac
SHA1: 4da593408616ce514956161b326ecc798abcfcc8
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

org.eclipse.core.resources-3.12.0.v20170417-1558.jar: resources-ant.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.core.resources\3.12.0.v20170417-1558\org.eclipse.core.resources-3.12.0.v20170417-1558.jar\ant_tasks\resources-ant.jar
MD5: 6881e0a2ad28ed304e7841518224be42
SHA1: e8e45793842d7f094c572f4294132be783760903
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • None

org.eclipse.jdt.launching-3.9.0.v20170419-1235.jar: launchingsupport.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.jdt.launching\3.9.0.v20170419-1235\org.eclipse.jdt.launching-3.9.0.v20170419-1235.jar\lib\launchingsupport.jar
MD5: bf3729a111aae4d45f5e43ade30b8b7f
SHA1: 54b0bbd09df452728470bc0e51cdb1a785f87097
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • None

org.jboss.tools.foundation.ui-1.4.1.v20170908-0905.jar: magicfile4j-1.0.0-Beta1.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.jboss.tools.foundation.ui\1.4.1.v20170908-0905\org.jboss.tools.foundation.ui-1.4.1.v20170908-0905.jar\lib\magicfile4j-1.0.0-Beta1.jar
MD5: 3c8743be975076dbea504a215db6aeec
SHA1: d0931fdd7ae5bd885718f59f7126030e3ae81477
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • maven: org.jboss.tools:magicfile4j:1.0.0-Beta1   Confidence:High

org.eclipse.jdt.core-3.13.0.v20170516-1929.jar: jdtCompilerAdapter.jar

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.jdt.core\3.13.0.v20170516-1929\org.eclipse.jdt.core-3.13.0.v20170516-1929.jar\jdtCompilerAdapter.jar
MD5: 24daaa085262af05a3d267495376228a
SHA1: 4ecef87dc4eb9d47e9a93b4c85e6aee298b62d0a
Referenced In Projects/Scopes:

  • org.jboss.tools.runtime.ui:system
  • org.jboss.tools.runtime.core:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-awt-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86_64\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar\swt-awt-win32-4757.dll
MD5: 54fea2feb2f4d9b40ac904dc7567b7e9
SHA1: 32a8c61e50a97098f151e047c49d6962870463a1
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-gdip-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86_64\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar\swt-gdip-win32-4757.dll
MD5: 62486d15d795c792e358a4663c0f35f3
SHA1: a179464a53845100c345a60631a10b72626aec26
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-wgl-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86_64\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar\swt-wgl-win32-4757.dll
MD5: a58daa967665175bc8ae44661291d3fe
SHA1: 0b4cedcc2fd9fe99758c39733961457aa1c8ed9b
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86_64\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar\swt-win32-4757.dll
MD5: f3180086e2747ac0c22947fe061b308d
SHA1: b3a63d66f2fd9aada6784c36fb3b15405bb825b8
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar: swt-xulrunner-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86_64\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86_64-3.106.0.v20170608-0516.jar\swt-xulrunner-win32-4757.dll
MD5: f48242dc8f9736b3e86be300fc9bc7eb
SHA1: 6045c6302066ed77d2ad649d0221d988168202fe
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-awt-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar\swt-awt-win32-4757.dll
MD5: c0628ec8aa36ea87ffbff4670ba39e03
SHA1: 7785407dc044b0abc28cfbd86d42506aa9b62f24
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-gdip-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar\swt-gdip-win32-4757.dll
MD5: 26265772c5178aa9b3ff19cd5c3b81cc
SHA1: 26695843cfea0ef1f6d062ee8f987659c1c7a07c
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-webkit-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar\swt-webkit-win32-4757.dll
MD5: 8d9f8d7e5890cfe996facbdeeb62f02d
SHA1: a58eb2cac459492ea4ac344e37f5088bb483b0fd
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

CVE-2008-6059  

Severity: Medium
CVSS Score: 5.0 (AV:N/AC:L/Au:N/C:P/I:N/A:N)
CWE: CWE-264 Permissions, Privileges, and Access Controls

xml/XMLHttpRequest.cpp in WebCore in WebKit before r38566 does not properly restrict access from web pages to the (1) Set-Cookie and (2) Set-Cookie2 HTTP response headers, which allows remote attackers to obtain sensitive information from cookies via XMLHttpRequest calls, related to the HTTPOnly protection mechanism.

Vulnerable Software & Versions:

CVE-2009-3933  

Severity: Medium
CVSS Score: 5.0 (AV:N/AC:L/Au:N/C:N/I:N/A:P)
CWE: CWE-399 Resource Management Errors

WebKit before r50173, as used in Google Chrome before 3.0.195.32, allows remote attackers to cause a denial of service (CPU consumption) via a web page that calls the JavaScript setInterval method, which triggers an incompatibility between the WTF::currentTime and base::Time functions.

Vulnerable Software & Versions:

CVE-2010-1766  

Severity: High
CVSS Score: 7.5 (AV:N/AC:L/Au:N/C:P/I:P/A:P)
CWE: CWE-189 Numeric Errors

Off-by-one error in the WebSocketHandshake::readServerHandshake function in websockets/WebSocketHandshake.cpp in WebCore in WebKit before r56380, as used in Qt and other products, allows remote websockets servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an upgrade header that is long and invalid.

Vulnerable Software & Versions: (show all)

CVE-2016-9642  

Severity: Medium
CVSS Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:N/A:P)
CWE: CWE-125 Out-of-bounds Read

JavaScriptCore in WebKit allows attackers to cause a denial of service (out-of-bounds heap read) via a crafted Javascript file.

Vulnerable Software & Versions:

org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-wgl-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar\swt-wgl-win32-4757.dll
MD5: c8293e98891f000652649bb4f4dcbe61
SHA1: 0dfa8a5e35488c5b6972674aa0b5abce892e29ca
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar\swt-win32-4757.dll
MD5: d2dee26a9c17119c8da44caeea78a43c
SHA1: 792ade083865c05b1c16fd98bf7de057e53459b7
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar: swt-xulrunner-win32-4757.dll

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.eclipse.swt.win32.win32.x86\3.106.0.v20170608-0516\org.eclipse.swt.win32.win32.x86-3.106.0.v20170608-0516.jar\swt-xulrunner-win32-4757.dll
MD5: 6d0db0cfba6d2a6cf787fcb8e6b84de5
SHA1: c927d996196cb24b380d53c9f1389f6c1dd843c6
Referenced In Project/Scope: org.jboss.tools.runtime.ui:system

Identifiers

  • None

org.apache.felix.scr-2.0.10.v20170501-2007.jar\META-INF/maven/org.eclipse.orbit.bundles/org.apache.felix.scr/pom.xml

File Path: C:\Users\JeffMAURY\.m2\repository\p2\osgi\bundle\org.apache.felix.scr\2.0.10.v20170501-2007\org.apache.felix.scr-2.0.10.v20170501-2007.jar\META-INF/maven/org.eclipse.orbit.bundles/org.apache.felix.scr/pom.xml
MD5: 039fb8af84c609de0fb5e84882109135
SHA1: 04a3062a4a56938ec73f9da1b4384b029ee35b94

Identifiers

  • maven: org.eclipse.orbit.bundles:org.apache.felix.scr:2.0.10-SNAPSHOT   Confidence:High


This report contains data retrieved from the National Vulnerability Database.
This report may contain data retrieved from the Node Security Platform.