Логотип exploitDog
bind:"BDU:2023-05156" OR bind:"CVE-2022-21299"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2023-05156" OR bind:"CVE-2022-21299"

Количество 32

Количество 32

fstec логотип

BDU:2023-05156

почти 4 года назад

Уязвимость компонента JAXP программной платформы Oracle Java SE и виртуальной машины Oracle GraalVM Enterprise Edition, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20240424-03

больше 1 года назад

Множественные уязвимости java-17-openjdk

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2022-21299

почти 4 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which su...

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2022-21299

почти 4 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which su...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2022-21299

почти 4 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which suppl

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2022-21299

почти 4 года назад

Vulnerability in the Oracle Java SE Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321 8u311 11.0.13 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments typically in clients running sandboxed Java Web Start applications or sandboxed Java applets that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component e.g. through a web service which supplies data to

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2022-21299

почти 4 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-9j45-cjg7-r8w4

почти 4 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.01; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which sup...

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20240424-02

больше 1 года назад

Множественные уязвимости java-11-openjdk

CVSS3: 8.1
EPSS: Низкий
redos логотип

ROS-20240424-01

больше 1 года назад

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 8.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2650-1

больше 3 лет назад

Security update for java-1_8_0-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2540-1

больше 3 лет назад

Security update for java-1_8_0-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2539-1

больше 3 лет назад

Security update for java-1_7_1-ibm

EPSS: Низкий
oracle-oval логотип

ELSA-2022-0307

почти 4 года назад

ELSA-2022-0307: java-1.8.0-openjdk security and bug fix update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-0306

почти 4 года назад

ELSA-2022-0306: java-1.8.0-openjdk security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:0873-1

больше 3 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0873-1

больше 3 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0871-1

больше 3 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:0870-1

больше 3 лет назад

Security update for java-1_8_0-openj9

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:0816-1

больше 3 лет назад

Security update for java-11-openjdk

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2023-05156

Уязвимость компонента JAXP программной платформы Oracle Java SE и виртуальной машины Oracle GraalVM Enterprise Edition, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
почти 4 года назад
redos логотип
ROS-20240424-03

Множественные уязвимости java-17-openjdk

CVSS3: 5.3
больше 1 года назад
ubuntu логотип
CVE-2022-21299

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which su...

CVSS3: 5.3
0%
Низкий
почти 4 года назад
redhat логотип
CVE-2022-21299

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which su...

CVSS3: 5.3
0%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-21299

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which suppl

CVSS3: 5.3
0%
Низкий
почти 4 года назад
msrc логотип
CVE-2022-21299

Vulnerability in the Oracle Java SE Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321 8u311 11.0.13 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments typically in clients running sandboxed Java Web Start applications or sandboxed Java applets that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component e.g. through a web service which supplies data to

CVSS3: 5.3
0%
Низкий
почти 4 года назад
debian логотип
CVE-2022-21299

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...

CVSS3: 5.3
0%
Низкий
почти 4 года назад
github логотип
GHSA-9j45-cjg7-r8w4

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.01; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which sup...

CVSS3: 5.3
0%
Низкий
почти 4 года назад
redos логотип
ROS-20240424-02

Множественные уязвимости java-11-openjdk

CVSS3: 8.1
больше 1 года назад
redos логотип
ROS-20240424-01

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 8.1
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2022:2650-1

Security update for java-1_8_0-ibm

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2540-1

Security update for java-1_8_0-ibm

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2539-1

Security update for java-1_7_1-ibm

больше 3 лет назад
oracle-oval логотип
ELSA-2022-0307

ELSA-2022-0307: java-1.8.0-openjdk security and bug fix update (MODERATE)

почти 4 года назад
oracle-oval логотип
ELSA-2022-0306

ELSA-2022-0306: java-1.8.0-openjdk security update (MODERATE)

почти 4 года назад
suse-cvrf логотип
openSUSE-SU-2022:0873-1

Security update for java-1_8_0-openjdk

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:0873-1

Security update for java-1_8_0-openjdk

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:0871-1

Security update for java-1_8_0-openjdk

больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2022:0870-1

Security update for java-1_8_0-openj9

больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2022:0816-1

Security update for java-11-openjdk

больше 3 лет назад

Уязвимостей на страницу