Lucene search

K
cve[email protected]CVE-2009-2673
HistoryAug 05, 2009 - 7:30 p.m.

CVE-2009-2673

2009-08-0519:30:01
CWE-264
web.nvd.nist.gov
61
cve-2009-2673
proxy mechanism
sun java
jre
jdk
remote attackers
access restrictions

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.2

Confidence

High

EPSS

0.023

Percentile

89.8%

The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows remote attackers to bypass intended access restrictions and connect to arbitrary sites via unspecified vectors, related to a declaration that lacks the final keyword.

Affected configurations

NVD
Node
sunjdkRange6update_13
OR
sunjdkMatch5.0update_1
OR
sunjdkMatch5.0update_10
OR
sunjdkMatch5.0update_11
OR
sunjdkMatch5.0update_12
OR
sunjdkMatch5.0update_13
OR
sunjdkMatch5.0update_14
OR
sunjdkMatch5.0update_15
OR
sunjdkMatch5.0update_16
OR
sunjdkMatch5.0update_17
OR
sunjdkMatch5.0update_2
OR
sunjdkMatch5.0update_3
OR
sunjdkMatch5.0update_4
OR
sunjdkMatch5.0update_5
OR
sunjdkMatch5.0update_6
OR
sunjdkMatch5.0update_7
OR
sunjdkMatch5.0update_8
OR
sunjdkMatch5.0update_9
OR
sunjdkMatch6update_1
OR
sunjdkMatch6update_10
OR
sunjdkMatch6update_11
OR
sunjdkMatch6update_12
OR
sunjdkMatch6update_2
OR
sunjdkMatch6update_3
OR
sunjdkMatch6update_4
OR
sunjdkMatch6update_5
OR
sunjdkMatch6update_6
OR
sunjdkMatch6update_7
OR
sunjdkMatch6update_8
OR
sunjdkMatch6update_9
OR
sunjreRange6update_13
OR
sunjreMatch5.0update_1
OR
sunjreMatch5.0update_10
OR
sunjreMatch5.0update_11
OR
sunjreMatch5.0update_12
OR
sunjreMatch5.0update_13
OR
sunjreMatch5.0update_14
OR
sunjreMatch5.0update_15
OR
sunjreMatch5.0update_16
OR
sunjreMatch5.0update_17
OR
sunjreMatch5.0update_19
OR
sunjreMatch5.0update_2
OR
sunjreMatch5.0update_3
OR
sunjreMatch5.0update_4
OR
sunjreMatch5.0update_5
OR
sunjreMatch5.0update_6
OR
sunjreMatch5.0update_7
OR
sunjreMatch5.0update_8
OR
sunjreMatch5.0update_9
OR
sunjreMatch6update_1
OR
sunjreMatch6update_10
OR
sunjreMatch6update_11
OR
sunjreMatch6update_12
OR
sunjreMatch6update_2
OR
sunjreMatch6update_3
OR
sunjreMatch6update_4
OR
sunjreMatch6update_5
OR
sunjreMatch6update_6
OR
sunjreMatch6update_7
OR
sunjreMatch6update_8
OR
sunjreMatch6update_9
VendorProductVersionCPE
sunjdk6cpe:/a:sun:jdk:6:update_5::
sunjre5.0cpe:/a:sun:jre:5.0:update_16::
sunjre5.0cpe:/a:sun:jre:5.0:update_17::
sunjrecpe:/a:sun:jre::update_13::
sunjre6cpe:/a:sun:jre:6:update_11::
sunjre5.0cpe:/a:sun:jre:5.0:update_2::
sunjdk5.0cpe:/a:sun:jdk:5.0:update_14::
sunjdk6cpe:/a:sun:jdk:6:update_3::
sunjre5.0cpe:/a:sun:jre:5.0:update_4::
sunjdk6cpe:/a:sun:jdk:6:update_4::
Rows per page:
1-10 of 611

References

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.2

Confidence

High

EPSS

0.023

Percentile

89.8%