Логотип exploitDog
bind:"BDU:2022-02655" OR bind:"CVE-2021-35560"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2022-02655" OR bind:"CVE-2021-35560"

Количество 11

Количество 11

fstec логотип

BDU:2022-02655

больше 3 лет назад

Уязвимость компонента Deployment программной платформы Java SE, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2021-35560

больше 3 лет назад

Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2021-35560

больше 3 лет назад

Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-35560

больше 3 лет назад

Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2021-35560

больше 3 лет назад

Vulnerability in the Java SE product of Oracle Java SE (component: Dep ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-q6fp-hjwx-q999

около 3 лет назад

Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20240424-02

около 1 года назад

Множественные уязвимости java-11-openjdk

CVSS3: 8.1
EPSS: Низкий
redos логотип

ROS-20240424-01

около 1 года назад

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 8.1
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:0108-1

больше 3 лет назад

Security update for java-1_8_0-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0108-1

больше 3 лет назад

Security update for java-1_8_0-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0107-1

больше 3 лет назад

Security update for java-1_8_0-ibm

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2022-02655

Уязвимость компонента Deployment программной платформы Java SE, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2021-35560

Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
redhat логотип
CVE-2021-35560

Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2021-35560

Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2021-35560

Vulnerability in the Java SE product of Oracle Java SE (component: Dep ...

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-q6fp-hjwx-q999

Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

CVSS3: 7.5
1%
Низкий
около 3 лет назад
redos логотип
ROS-20240424-02

Множественные уязвимости java-11-openjdk

CVSS3: 8.1
около 1 года назад
redos логотип
ROS-20240424-01

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 8.1
около 1 года назад
suse-cvrf логотип
openSUSE-SU-2022:0108-1

Security update for java-1_8_0-ibm

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:0108-1

Security update for java-1_8_0-ibm

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:0107-1

Security update for java-1_8_0-ibm

больше 3 лет назад

Уязвимостей на страницу