Lucene search

K
cveOracleCVE-2013-2449
HistoryJun 18, 2013 - 10:55 p.m.

CVE-2013-2449

2013-06-1822:55:02
oracle
web.nvd.nist.gov
51
cve-2013-2449
oracle java
openjdk
vulnerability
security
confidentiality
java runtime environment
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

7.8

Confidence

High

EPSS

0.007

Percentile

80.7%

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, and OpenJDK 7, allows remote attackers to affect confidentiality via unknown vectors related to Libraries. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to GnomeFileTypeDetector and a missing check for read permissions for a path.

Affected configurations

Nvd
Node
oraclejreRange1.7.0update21
OR
oraclejreMatch1.7.0
OR
oraclejreMatch1.7.0update1
OR
oraclejreMatch1.7.0update10
OR
oraclejreMatch1.7.0update11
OR
oraclejreMatch1.7.0update13
OR
oraclejreMatch1.7.0update15
OR
oraclejreMatch1.7.0update17
OR
oraclejreMatch1.7.0update2
OR
oraclejreMatch1.7.0update3
OR
oraclejreMatch1.7.0update4
OR
oraclejreMatch1.7.0update5
OR
oraclejreMatch1.7.0update6
OR
oraclejreMatch1.7.0update7
OR
oraclejreMatch1.7.0update9
Node
oraclejdkRange1.7.0update21
OR
oraclejdkMatch1.7.0
OR
oraclejdkMatch1.7.0update1
OR
oraclejdkMatch1.7.0update10
OR
oraclejdkMatch1.7.0update11
OR
oraclejdkMatch1.7.0update13
OR
oraclejdkMatch1.7.0update15
OR
oraclejdkMatch1.7.0update17
OR
oraclejdkMatch1.7.0update2
OR
oraclejdkMatch1.7.0update3
OR
oraclejdkMatch1.7.0update4
OR
oraclejdkMatch1.7.0update5
OR
oraclejdkMatch1.7.0update6
OR
oraclejdkMatch1.7.0update7
OR
oraclejdkMatch1.7.0update9
VendorProductVersionCPE
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update2::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update6::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update10::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update9::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update15::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update3::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update4::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update11::
oraclejre1.7.0cpe:/a:oracle:jre:1.7.0:update5::
Rows per page:
1-10 of 151

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

7.8

Confidence

High

EPSS

0.007

Percentile

80.7%