Логотип exploitDog
bind:CVE-2022-21496
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-21496

Количество 29

Количество 29

ubuntu логотип

CVE-2022-21496

больше 3 лет назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web servi...

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2022-21496

больше 3 лет назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web servi...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2022-21496

больше 3 лет назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2022-21496

больше 3 лет назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-ph68-gfg8-7cjx

больше 3 лет назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web servi...

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2022-03794

больше 3 лет назад

Уязвимость компонента JNDI программной платформы Java SE и виртуальной машины Oracle GraalVM Enterprise Edition, позволяющая нарушителю получить доступ на изменение, добавление или удаление данных

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2531-1

около 3 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2530-1

около 3 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1513-1

больше 3 лет назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1474-1

больше 3 лет назад

Security update for java-11-openjdk

EPSS: Низкий
rocky логотип

RLSA-2022:1491

больше 3 лет назад

Important: java-1.8.0-openjdk security update

EPSS: Низкий
rocky логотип

RLSA-2022:1442

больше 3 лет назад

Important: java-11-openjdk security update

EPSS: Низкий
oracle-oval логотип

ELSA-2022-2137

около 3 лет назад

ELSA-2022-2137: java-1.8.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-1728

около 3 лет назад

ELSA-2022-1728: java-11-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-1491

больше 3 лет назад

ELSA-2022-1491: java-1.8.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-1487

больше 3 лет назад

ELSA-2022-1487: java-1.8.0-openjdk security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-1442

больше 3 лет назад

ELSA-2022-1442: java-11-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-1440

больше 3 лет назад

ELSA-2022-1440: java-11-openjdk security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2022:1445

больше 3 лет назад

Important: java-17-openjdk security and bug fix update

EPSS: Низкий
oracle-oval логотип

ELSA-2022-1729

около 3 лет назад

ELSA-2022-1729: java-17-openjdk security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-21496

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web servi...

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2022-21496

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web servi...

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-21496

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-21496

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-ph68-gfg8-7cjx

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web servi...

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-03794

Уязвимость компонента JNDI программной платформы Java SE и виртуальной машины Oracle GraalVM Enterprise Edition, позволяющая нарушителю получить доступ на изменение, добавление или удаление данных

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2531-1

Security update for java-1_8_0-openjdk

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2530-1

Security update for java-1_8_0-openjdk

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1513-1

Security update for java-11-openjdk

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1474-1

Security update for java-11-openjdk

больше 3 лет назад
rocky логотип
RLSA-2022:1491

Important: java-1.8.0-openjdk security update

больше 3 лет назад
rocky логотип
RLSA-2022:1442

Important: java-11-openjdk security update

больше 3 лет назад
oracle-oval логотип
ELSA-2022-2137

ELSA-2022-2137: java-1.8.0-openjdk security update (IMPORTANT)

около 3 лет назад
oracle-oval логотип
ELSA-2022-1728

ELSA-2022-1728: java-11-openjdk security update (IMPORTANT)

около 3 лет назад
oracle-oval логотип
ELSA-2022-1491

ELSA-2022-1491: java-1.8.0-openjdk security update (IMPORTANT)

больше 3 лет назад
oracle-oval логотип
ELSA-2022-1487

ELSA-2022-1487: java-1.8.0-openjdk security, bug fix, and enhancement update (IMPORTANT)

больше 3 лет назад
oracle-oval логотип
ELSA-2022-1442

ELSA-2022-1442: java-11-openjdk security update (IMPORTANT)

больше 3 лет назад
oracle-oval логотип
ELSA-2022-1440

ELSA-2022-1440: java-11-openjdk security, bug fix, and enhancement update (IMPORTANT)

больше 3 лет назад
rocky логотип
RLSA-2022:1445

Important: java-17-openjdk security and bug fix update

больше 3 лет назад
oracle-oval логотип
ELSA-2022-1729

ELSA-2022-1729: java-17-openjdk security update (IMPORTANT)

около 3 лет назад

Уязвимостей на страницу