Lucene search

K
prionPRIOn knowledge basePRION:CVE-2013-1488
HistoryMar 08, 2013 - 6:55 p.m.

Design/Logic Flaw

2013-03-0818:55:00
PRIOn knowledge base
www.prio-n.com
2

7.2 High

AI Score

Confidence

Low

0.97 High

EPSS

Percentile

99.7%

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 6 and 7, allows remote attackers to execute arbitrary code via unspecified vectors involving reflection, Libraries, “improper toString calls,” and the JDBC driver manager, as demonstrated by James Forshaw during a Pwn2Own competition at CanSecWest 2013.

CPENameOperatorVersion
jdkeq1.7.0 update17
jreeq1.7.0 update17

References