Lucene search

K
cveOracleCVE-2014-2490
HistoryJul 17, 2014 - 5:10 a.m.

CVE-2014-2490

2014-07-1705:10:14
oracle
web.nvd.nist.gov
66
cve-2014-2490
oracle
java
vulnerability
confidentiality
integrity
availability
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

5.5

Confidence

Low

EPSS

0.02

Percentile

89.0%

Unspecified vulnerability in the Java SE component in Oracle Java SE 7u60 and SE 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.

Affected configurations

Nvd
Node
hphp-uxMatchb.11.23
OR
hphp-uxMatchb.11.31
Node
debiandebian_linuxMatch7.0
Node
oraclejdkMatch1.7.0update60
OR
oraclejdkMatch1.8.0update5
OR
oraclejreMatch1.7.0update60
OR
oraclejreMatch1.8.0update5
VendorProductVersionCPE
hphp-uxb.11.23cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*
hphp-uxb.11.31cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*
debiandebian_linux7.0cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
oraclejdk1.7.0cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*
oraclejdk1.8.0cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*
oraclejre1.7.0cpe:2.3:a:oracle:jre:1.7.0:update60:*:*:*:*:*:*
oraclejre1.8.0cpe:2.3:a:oracle:jre:1.8.0:update5:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

5.5

Confidence

Low

EPSS

0.02

Percentile

89.0%