Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-3112

Опубликовано: 09 июл. 2008
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 10

Описание

Directory traversal vulnerability in Sun Java Web Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows remote attackers to create arbitrary files via the writeManifest method in the CacheEntry class, aka CR 6703909.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

feisty

ignored

end of life, was needs-triage
gutsy

ignored

end of life, was needs-triage
hardy

released

1.5.0-22-0ubuntu0.8.04
intrepid

not-affected

1.5.0-16-2ubuntu1
jaunty

not-affected

1.5.0-16-2ubuntu1
karmic

DNE

upstream

released

1.5.0-16-1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

6-07-3ubuntu1
feisty

ignored

end of life, was needs-triage
gutsy

ignored

end of life, was needs-triage
hardy

released

6-17-0ubuntu1.8.04
intrepid

not-affected

6-07-3ubuntu1
jaunty

not-affected

6-07-3ubuntu1
karmic

not-affected

6-07-3ubuntu1
upstream

released

6-07-1

Показывать по

Ссылки на источники

EPSS

Процентиль: 92%
0.0838
Низкий

10 Critical

CVSS2

Связанные уязвимости

redhat
больше 17 лет назад

Directory traversal vulnerability in Sun Java Web Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows remote attackers to create arbitrary files via the writeManifest method in the CacheEntry class, aka CR 6703909.

nvd
больше 17 лет назад

Directory traversal vulnerability in Sun Java Web Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows remote attackers to create arbitrary files via the writeManifest method in the CacheEntry class, aka CR 6703909.

debian
больше 17 лет назад

Directory traversal vulnerability in Sun Java Web Start in JDK and JRE ...

github
больше 3 лет назад

Directory traversal vulnerability in Sun Java Web Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows remote attackers to create arbitrary files via the writeManifest method in the CacheEntry class, aka CR 6703909.

EPSS

Процентиль: 92%
0.0838
Низкий

10 Critical

CVSS2