Lucene search

K
cve[email protected]CVE-2014-0460
HistoryApr 16, 2014 - 1:55 a.m.

CVE-2014-0460

2014-04-1601:55:09
web.nvd.nist.gov
97
cve-2014-0460
oracle java se
vulnerability
confidentiality
integrity
jndi
nvd

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

6.4 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

69.7%

Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via vectors related to JNDI.

Affected configurations

NVD
Node
oraclejrockitMatchr27.8.1
OR
oraclejrockitMatchr28.3.1
Node
canonicalubuntu_linuxMatch10.04-
OR
canonicalubuntu_linuxMatch12.04-
OR
canonicalubuntu_linuxMatch12.10
OR
canonicalubuntu_linuxMatch13.10
OR
canonicalubuntu_linuxMatch14.04esm
Node
juniperjunos_spaceRange<15.1
Node
oraclejdkMatch1.5.0update61
OR
oraclejdkMatch1.6.0update71
OR
oraclejdkMatch1.7.0update51
OR
oraclejdkMatch1.8.0-
OR
oraclejreMatch1.5.0update61
OR
oraclejreMatch1.6.0update71
OR
oraclejreMatch1.7.0update51
OR
oraclejreMatch1.8.0-
Node
debiandebian_linuxMatch6.0
OR
debiandebian_linuxMatch7.0
OR
debiandebian_linuxMatch8.0

References

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

6.4 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

69.7%