Lucene search

K
cve[email protected]CVE-2014-6457
HistoryOct 15, 2014 - 3:55 p.m.

CVE-2014-6457

2014-10-1515:55:07
web.nvd.nist.gov
97
2
cve-2014-6457
oracle
java
se
vulnerability
confidentiality
integrity
nvd
jsse

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:N/I:P/A:P

3.8 Low

AI Score

Confidence

Low

0.034 Low

EPSS

Percentile

91.5%

Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3, and R28.3.3 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE.

Affected configurations

NVD
Node
oraclejrockitMatchr27.8.3
OR
oraclejrockitMatchr28.3.3
Node
oraclejdkMatch1.5.0update_71
OR
oraclejdkMatch1.6.0update81
OR
oraclejdkMatch1.7.0update60
OR
oraclejdkMatch1.7.0update67
OR
oraclejdkMatch1.8.0update20
OR
oraclejreMatch1.5.0update_71
OR
oraclejreMatch1.6.0update_81
OR
oraclejreMatch1.7.0update_67
OR
oraclejreMatch1.7.0update60
OR
oraclejreMatch1.8.0update_20

References

Social References

More

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:N/I:P/A:P

3.8 Low

AI Score

Confidence

Low

0.034 Low

EPSS

Percentile

91.5%