Lucene search

K
cve[email protected]CVE-2014-0458
HistoryApr 16, 2014 - 1:55 a.m.

CVE-2014-0458

2014-04-1601:55:09
web.nvd.nist.gov
68
cve-2014-0458
oracle
java
se
vulnerability
remote attackers
confidentiality
integrity
availability
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.6 Medium

AI Score

Confidence

Low

0.008 Low

EPSS

Percentile

81.6%

Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS, a different vulnerability than CVE-2014-0452 and CVE-2014-2423.

Affected configurations

NVD
Node
canonicalubuntu_linuxMatch10.04-
OR
canonicalubuntu_linuxMatch12.04-
OR
canonicalubuntu_linuxMatch12.10
OR
canonicalubuntu_linuxMatch13.10
OR
canonicalubuntu_linuxMatch14.04esm
Node
oraclejdkMatch1.6.0update71
OR
oraclejdkMatch1.7.0update51
OR
oraclejdkMatch1.8.0-
OR
oraclejreMatch1.6.0update71
OR
oraclejreMatch1.7.0update51
OR
oraclejreMatch1.8.0-
Node
debiandebian_linuxMatch6.0
OR
debiandebian_linuxMatch7.0
OR
debiandebian_linuxMatch8.0

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.6 Medium

AI Score

Confidence

Low

0.008 Low

EPSS

Percentile

81.6%