CVSS2
Attack Vector
ADJACENT_NETWORK
Attack Complexity
HIGH
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
NONE
Availability Impact
NONE
AV:A/AC:H/Au:N/C:P/I:N/A:N
AI Score
Confidence
Low
EPSS
Percentile
69.6%
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, and JavaFX 2.0 allows remote attackers to affect confidentiality via unknown vectors related to Deployment.
Vendor | Product | Version | CPE |
---|---|---|---|
oracle | javafx | 2.0 | cpe:2.3:a:oracle:javafx:2.0:*:*:*:*:*:*:* |
sun | jdk | 1.7.0 | cpe:2.3:a:sun:jdk:1.7.0:*:*:*:*:*:*:* |
sun | jre | 1.7.0 | cpe:2.3:a:sun:jre:1.7.0:*:*:*:*:*:*:* |
oracle | jdk | * | cpe:2.3:a:oracle:jdk:*:update27:*:*:*:*:*:* |
oracle | jdk | 1.6.0 | cpe:2.3:a:oracle:jdk:1.6.0:update22:*:*:*:*:*:* |
oracle | jdk | 1.6.0 | cpe:2.3:a:oracle:jdk:1.6.0:update23:*:*:*:*:*:* |
oracle | jdk | 1.6.0 | cpe:2.3:a:oracle:jdk:1.6.0:update24:*:*:*:*:*:* |
oracle | jdk | 1.6.0 | cpe:2.3:a:oracle:jdk:1.6.0:update25:*:*:*:*:*:* |
oracle | jdk | 1.6.0 | cpe:2.3:a:oracle:jdk:1.6.0:update26:*:*:*:*:*:* |
sun | jdk | 1.6.0 | cpe:2.3:a:sun:jdk:1.6.0:*:*:*:*:*:*:* |
lists.opensuse.org/opensuse-security-announce/2012-01/msg00049.html
marc.info/?l=bugtraq&m=132750579901589&w=2
marc.info/?l=bugtraq&m=134254866602253&w=2
marc.info/?l=bugtraq&m=134254957702612&w=2
osvdb.org/76513
rhn.redhat.com/errata/RHSA-2013-1455.html
secunia.com/advisories/48308
www.ibm.com/developerworks/java/jdk/alerts/
www.oracle.com/technetwork/topics/security/javacpuoct2011-443431.html
www.redhat.com/support/errata/RHSA-2011-1384.html
www.securityfocus.com/bid/50250
www.securitytracker.com/id?1026215
exchange.xforce.ibmcloud.com/vulnerabilities/70833
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14274