Логотип exploitDog
bind:"GHSA-hw3x-mw2m-4jxw" OR bind:"CVE-2020-14577"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-hw3x-mw2m-4jxw" OR bind:"CVE-2020-14577"

Количество 26

Количество 26

github логотип

GHSA-hw3x-mw2m-4jxw

больше 3 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2020-14577

больше 5 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2020-14577

больше 5 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2020-14577

больше 5 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2020-14577

больше 5 лет назад

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java ...

CVSS3: 3.7
EPSS: Низкий
fstec логотип

BDU:2020-03860

больше 5 лет назад

Уязвимость компонента JSSE программных платформ Oracle Java SE и Oracle Java SE Embedded, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 3.7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2861-1

около 5 лет назад

Security update for java-1_7_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2482-1

около 5 лет назад

Security update for java-1_7_1-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:14484-1

около 5 лет назад

Security update for java-1_7_1-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:14482-1

около 5 лет назад

Security update for java-1_7_0-ibm

EPSS: Низкий
oracle-oval логотип

ELSA-2020-2985

больше 5 лет назад

ELSA-2020-2985: java-1.8.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-2972

больше 5 лет назад

ELSA-2020-2972: java-1.8.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-2970

больше 5 лет назад

ELSA-2020-2970: java-11-openjdk security and enhancement update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-2969

больше 5 лет назад

ELSA-2020-2969: java-11-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-2968

больше 5 лет назад

ELSA-2020-2968: java-1.8.0-openjdk security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1191-1

около 5 лет назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1175-1

около 5 лет назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2143-1

около 5 лет назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2008-1

больше 5 лет назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2461-1

около 5 лет назад

Security update for java-1_8_0-ibm

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-hw3x-mw2m-4jxw

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 3.7
0%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2020-14577

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 3.7
0%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-14577

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 3.7
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-14577

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 3.7
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-14577

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java ...

CVSS3: 3.7
0%
Низкий
больше 5 лет назад
fstec логотип
BDU:2020-03860

Уязвимость компонента JSSE программных платформ Oracle Java SE и Oracle Java SE Embedded, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 3.7
0%
Низкий
больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2861-1

Security update for java-1_7_0-openjdk

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2482-1

Security update for java-1_7_1-ibm

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:14484-1

Security update for java-1_7_1-ibm

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:14482-1

Security update for java-1_7_0-ibm

около 5 лет назад
oracle-oval логотип
ELSA-2020-2985

ELSA-2020-2985: java-1.8.0-openjdk security update (IMPORTANT)

больше 5 лет назад
oracle-oval логотип
ELSA-2020-2972

ELSA-2020-2972: java-1.8.0-openjdk security update (IMPORTANT)

больше 5 лет назад
oracle-oval логотип
ELSA-2020-2970

ELSA-2020-2970: java-11-openjdk security and enhancement update (IMPORTANT)

больше 5 лет назад
oracle-oval логотип
ELSA-2020-2969

ELSA-2020-2969: java-11-openjdk security update (IMPORTANT)

больше 5 лет назад
oracle-oval логотип
ELSA-2020-2968

ELSA-2020-2968: java-1.8.0-openjdk security update (IMPORTANT)

больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1191-1

Security update for java-11-openjdk

около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1175-1

Security update for java-11-openjdk

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2143-1

Security update for java-11-openjdk

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2008-1

Security update for java-11-openjdk

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2461-1

Security update for java-1_8_0-ibm

около 5 лет назад

Уязвимостей на страницу