Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

ubuntu логотип

CVE-2013-2423

больше 13 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from the original researcher that this vulnerability allows remote attackers to bypass permission checks by the MethodHandles method and modify arbitrary public final fields using reflection and type confusion, as demonstrated using integer and double fields to disable the security manager.

CVSS3: 3.7
EPSS: Высокий
redhat логотип

CVE-2013-2423

больше 13 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from the original researcher that this vulnerability allows remote attackers to bypass permission checks by the MethodHandles method and modify arbitrary public final fields using reflection and type confusion, as demonstrated using integer and double fields to disable the security manager.

CVSS2: 4.3
EPSS: Высокий
nvd логотип

CVE-2013-2423

больше 13 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from the original researcher that this vulnerability allows remote attackers to bypass permission checks by the MethodHandles method and modify arbitrary public final fields using reflection and type confusion, as demonstrated using integer and double fields to disable the security manager.

CVSS3: 3.7
EPSS: Высокий
debian логотип

CVE-2013-2423

больше 13 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) compon ...

CVSS3: 3.7
EPSS: Высокий
github логотип

GHSA-wq4h-35pf-mp23

около 4 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from the original researcher that this vulnerability allows remote attackers to bypass permission checks by the MethodHandles method and modify arbitrary public final fields using reflection and type confusion, as demonstrated using integer and double fields to disable the security manager.

CVSS3: 3.7
EPSS: Высокий
fstec логотип

BDU:2022-03796

больше 13 лет назад

Уязвимость программной платформы Java Runtime Environment, вызванная выходом операции за границы буфера в памяти, позволяющая нарушителю повлиять на целостность или отключить диспетчера безопасности

CVSS3: 5.3
EPSS: Высокий
oracle-oval логотип

ELSA-2013-0752

больше 13 лет назад

ELSA-2013-0752: java-1.7.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0751

больше 13 лет назад

ELSA-2013-0751: java-1.7.0-openjdk security update (CRITICAL)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2013-2423

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from the original researcher that this vulnerability allows remote attackers to bypass permission checks by the MethodHandles method and modify arbitrary public final fields using reflection and type confusion, as demonstrated using integer and double fields to disable the security manager.

CVSS3: 3.7
85%
Высокий
больше 13 лет назад
redhat логотип
CVE-2013-2423

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from the original researcher that this vulnerability allows remote attackers to bypass permission checks by the MethodHandles method and modify arbitrary public final fields using reflection and type confusion, as demonstrated using integer and double fields to disable the security manager.

CVSS2: 4.3
85%
Высокий
больше 13 лет назад
nvd логотип
CVE-2013-2423

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from the original researcher that this vulnerability allows remote attackers to bypass permission checks by the MethodHandles method and modify arbitrary public final fields using reflection and type confusion, as demonstrated using integer and double fields to disable the security manager.

CVSS3: 3.7
85%
Высокий
больше 13 лет назад
debian логотип
CVE-2013-2423

Unspecified vulnerability in the Java Runtime Environment (JRE) compon ...

CVSS3: 3.7
85%
Высокий
больше 13 лет назад
github логотип
GHSA-wq4h-35pf-mp23

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from the original researcher that this vulnerability allows remote attackers to bypass permission checks by the MethodHandles method and modify arbitrary public final fields using reflection and type confusion, as demonstrated using integer and double fields to disable the security manager.

CVSS3: 3.7
85%
Высокий
около 4 лет назад
fstec логотип
BDU:2022-03796

Уязвимость программной платформы Java Runtime Environment, вызванная выходом операции за границы буфера в памяти, позволяющая нарушителю повлиять на целостность или отключить диспетчера безопасности

CVSS3: 5.3
85%
Высокий
больше 13 лет назад
oracle-oval логотип
ELSA-2013-0752

ELSA-2013-0752: java-1.7.0-openjdk security update (IMPORTANT)

больше 13 лет назад
oracle-oval логотип
ELSA-2013-0751

ELSA-2013-0751: java-1.7.0-openjdk security update (CRITICAL)

больше 13 лет назад

Уязвимостей на страницу