Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 28

Количество 28

fstec логотип

BDU:2020-02631

больше 6 лет назад

Уязвимость компонента Lightweight HTTP Server программных платформ Oracle Java SE и Oracle Java SE Embedded, позволяющая нарушителю получить доступ на изменение, добавление или удаление данных или несанкционированный доступ к защищаемой информации

CVSS3: 4.8
EPSS: Низкий
ubuntu логотип

CVE-2020-2800

больше 6 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2020-2800

больше 6 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2020-2800

больше 6 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2020-2800

больше 6 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java ...

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-359p-jmhp-cvrp

около 4 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

CVSS3: 4.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:1683-1

около 6 лет назад

Security update for java-1_7_1-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:1571-1

около 6 лет назад

Security update for java-1_7_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:14398-1

около 6 лет назад

Security update for java-1_7_1-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:14391-1

около 6 лет назад

Security update for java-1_7_0-ibm

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1508

больше 6 лет назад

ELSA-2020-1508: java-1.7.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1507

больше 6 лет назад

ELSA-2020-1507: java-1.7.0-openjdk security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0841-1

около 6 лет назад

Security update for java-1_8_0-openj9

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0800-1

около 6 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:1686-1

около 6 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:1569-2

около 6 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:1569-1

около 6 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1515

больше 6 лет назад

ELSA-2020-1515: java-1.8.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1512

больше 6 лет назад

ELSA-2020-1512: java-1.8.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1506

больше 6 лет назад

ELSA-2020-1506: java-1.8.0-openjdk security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2020-02631

Уязвимость компонента Lightweight HTTP Server программных платформ Oracle Java SE и Oracle Java SE Embedded, позволяющая нарушителю получить доступ на изменение, добавление или удаление данных или несанкционированный доступ к защищаемой информации

CVSS3: 4.8
3%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2020-2800

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

CVSS3: 4.8
3%
Низкий
больше 6 лет назад
redhat логотип
CVE-2020-2800

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

CVSS3: 4.8
3%
Низкий
больше 6 лет назад
nvd логотип
CVE-2020-2800

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

CVSS3: 4.8
3%
Низкий
больше 6 лет назад
debian логотип
CVE-2020-2800

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java ...

CVSS3: 4.8
3%
Низкий
больше 6 лет назад
github логотип
GHSA-359p-jmhp-cvrp

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

CVSS3: 4.8
3%
Низкий
около 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:1683-1

Security update for java-1_7_1-ibm

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:1571-1

Security update for java-1_7_0-openjdk

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:14398-1

Security update for java-1_7_1-ibm

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:14391-1

Security update for java-1_7_0-ibm

около 6 лет назад
oracle-oval логотип
ELSA-2020-1508

ELSA-2020-1508: java-1.7.0-openjdk security update (IMPORTANT)

больше 6 лет назад
oracle-oval логотип
ELSA-2020-1507

ELSA-2020-1507: java-1.7.0-openjdk security update (IMPORTANT)

больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0841-1

Security update for java-1_8_0-openj9

около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0800-1

Security update for java-1_8_0-openjdk

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:1686-1

Security update for java-1_8_0-openjdk

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:1569-2

Security update for java-1_8_0-openjdk

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:1569-1

Security update for java-1_8_0-openjdk

около 6 лет назад
oracle-oval логотип
ELSA-2020-1515

ELSA-2020-1515: java-1.8.0-openjdk security update (IMPORTANT)

больше 6 лет назад
oracle-oval логотип
ELSA-2020-1512

ELSA-2020-1512: java-1.8.0-openjdk security update (IMPORTANT)

больше 6 лет назад
oracle-oval логотип
ELSA-2020-1506

ELSA-2020-1506: java-1.8.0-openjdk security update (IMPORTANT)

больше 6 лет назад

Уязвимостей на страницу