Lucene search

K
cveMitreCVE-2009-2671
HistoryAug 05, 2009 - 7:30 p.m.

CVE-2009-2671

2009-08-0519:30:01
mitre
web.nvd.nist.gov
65
2
cve-2009-2671
sun java
jre
socks proxy
remote attack
username discovery

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6

Confidence

High

EPSS

0.007

Percentile

80.7%

The SOCKS proxy implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows remote attackers to discover the username of the account that invoked an untrusted (1) applet or (2) Java Web Start application via unspecified vectors.

Affected configurations

Nvd
Node
sunjdkRange6update_13
OR
sunjdkMatch5.0update_1
OR
sunjdkMatch5.0update_10
OR
sunjdkMatch5.0update_11
OR
sunjdkMatch5.0update_12
OR
sunjdkMatch5.0update_13
OR
sunjdkMatch5.0update_14
OR
sunjdkMatch5.0update_15
OR
sunjdkMatch5.0update_16
OR
sunjdkMatch5.0update_17
OR
sunjdkMatch5.0update_2
OR
sunjdkMatch5.0update_3
OR
sunjdkMatch5.0update_4
OR
sunjdkMatch5.0update_5
OR
sunjdkMatch5.0update_6
OR
sunjdkMatch5.0update_7
OR
sunjdkMatch5.0update_8
OR
sunjdkMatch5.0update_9
OR
sunjdkMatch6update_1
OR
sunjdkMatch6update_10
OR
sunjdkMatch6update_11
OR
sunjdkMatch6update_12
OR
sunjdkMatch6update_2
OR
sunjdkMatch6update_3
OR
sunjdkMatch6update_4
OR
sunjdkMatch6update_5
OR
sunjdkMatch6update_6
OR
sunjdkMatch6update_7
OR
sunjdkMatch6update_8
OR
sunjdkMatch6update_9
OR
sunjreRange6update_13
OR
sunjreMatch5.0update_1
OR
sunjreMatch5.0update_10
OR
sunjreMatch5.0update_11
OR
sunjreMatch5.0update_12
OR
sunjreMatch5.0update_13
OR
sunjreMatch5.0update_14
OR
sunjreMatch5.0update_15
OR
sunjreMatch5.0update_16
OR
sunjreMatch5.0update_17
OR
sunjreMatch5.0update_19
OR
sunjreMatch5.0update_2
OR
sunjreMatch5.0update_3
OR
sunjreMatch5.0update_4
OR
sunjreMatch5.0update_5
OR
sunjreMatch5.0update_6
OR
sunjreMatch5.0update_7
OR
sunjreMatch5.0update_8
OR
sunjreMatch5.0update_9
OR
sunjreMatch6update_1
OR
sunjreMatch6update_10
OR
sunjreMatch6update_11
OR
sunjreMatch6update_12
OR
sunjreMatch6update_2
OR
sunjreMatch6update_3
OR
sunjreMatch6update_4
OR
sunjreMatch6update_5
OR
sunjreMatch6update_6
OR
sunjreMatch6update_7
OR
sunjreMatch6update_8
OR
sunjreMatch6update_9
VendorProductVersionCPE
sunjdk6cpe:/a:sun:jdk:6:update_6::
sunjdk5.0cpe:/a:sun:jdk:5.0:update_16::
sunjdkcpe:/a:sun:jdk::update_13::
sunjdk5.0cpe:/a:sun:jdk:5.0:update_15::
sunjdk6cpe:/a:sun:jdk:6:update_2::
sunjdk5.0cpe:/a:sun:jdk:5.0:update_6::
sunjre5.0cpe:/a:sun:jre:5.0:update_14::
sunjre5.0cpe:/a:sun:jre:5.0:update_9::
sunjre6cpe:/a:sun:jre:6:update_5::
sunjdk5.0cpe:/a:sun:jdk:5.0:update_10::
Rows per page:
1-10 of 611

References

Social References

More

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6

Confidence

High

EPSS

0.007

Percentile

80.7%