Lucene search

K
cveOracleCVE-2014-6517
HistoryOct 15, 2014 - 10:55 p.m.

CVE-2014-6517

2014-10-1522:55:06
oracle
web.nvd.nist.gov
91
2
cve-2014-6517
oracle java se
vulnerability
confidentiality
jaxp vectors
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

3.2

Confidence

Low

EPSS

0.008

Percentile

81.7%

Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and Jrockit R27.8.3 and R28.3.3 allows remote attackers to affect confidentiality via vectors related to JAXP.

Affected configurations

Nvd
Node
oraclejrockitMatchr27.8.3
OR
oraclejrockitMatchr28.3.3
Node
oraclejdkMatch1.6.0update81
OR
oraclejdkMatch1.7.0update60
OR
oraclejreMatch1.6.0update_81
OR
oraclejreMatch1.7.0update_67
OR
oraclejreMatch1.7.0update60
OR
oraclejreMatch1.8.0update_20
VendorProductVersionCPE
oraclejrockitr27.8.3cpe:2.3:a:oracle:jrockit:r27.8.3:*:*:*:*:*:*:*
oraclejrockitr28.3.3cpe:2.3:a:oracle:jrockit:r28.3.3:*:*:*:*:*:*:*
oraclejdk1.6.0cpe:2.3:a:oracle:jdk:1.6.0:update81:*:*:*:*:*:*
oraclejdk1.7.0cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*
oraclejre1.6.0cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*
oraclejre1.7.0cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*
oraclejre1.7.0cpe:2.3:a:oracle:jre:1.7.0:update60:*:*:*:*:*:*
oraclejre1.8.0cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*

References

Social References

More

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

3.2

Confidence

Low

EPSS

0.008

Percentile

81.7%