Логотип exploitDog
bind:CVE-2013-0401
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-0401

Количество 15

Количество 15

ubuntu логотип

CVE-2013-0401

больше 12 лет назад

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute arbitrary code via vectors related to AWT, as demonstrated by Ben Murphy during a Pwn2Own competition at CanSecWest 2013. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to invocation of the system class loader by the sun.awt.datatransfer.ClassLoaderObjectInputStream class, which allows remote attackers to bypass Java sandbox restrictions.

CVSS2: 10
EPSS: Средний
redhat логотип

CVE-2013-0401

больше 12 лет назад

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute arbitrary code via vectors related to AWT, as demonstrated by Ben Murphy during a Pwn2Own competition at CanSecWest 2013. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to invocation of the system class loader by the sun.awt.datatransfer.ClassLoaderObjectInputStream class, which allows remote attackers to bypass Java sandbox restrictions.

CVSS2: 6.8
EPSS: Средний
nvd логотип

CVE-2013-0401

больше 12 лет назад

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute arbitrary code via vectors related to AWT, as demonstrated by Ben Murphy during a Pwn2Own competition at CanSecWest 2013. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to invocation of the system class loader by the sun.awt.datatransfer.ClassLoaderObjectInputStream class, which allows remote attackers to bypass Java sandbox restrictions.

CVSS2: 10
EPSS: Средний
debian логотип

CVE-2013-0401

больше 12 лет назад

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Updat ...

CVSS2: 10
EPSS: Средний
github логотип

GHSA-7fc2-vc87-69w8

больше 3 лет назад

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute arbitrary code via vectors related to AWT, as demonstrated by Ben Murphy during a Pwn2Own competition at CanSecWest 2013. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to invocation of the system class loader by the sun.awt.datatransfer.ClassLoaderObjectInputStream class, which allows remote attackers to bypass Java sandbox restrictions.

EPSS: Средний
oracle-oval логотип

ELSA-2013-0770

больше 12 лет назад

ELSA-2013-0770: java-1.6.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0752

больше 12 лет назад

ELSA-2013-0752: java-1.7.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0751

больше 12 лет назад

ELSA-2013-0751: java-1.7.0-openjdk security update (CRITICAL)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1086-2

почти 11 лет назад

Security update for IBM Java

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1086-4

почти 11 лет назад

Security update for IBM Java

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0343-1

почти 11 лет назад

Security update for IBM Java

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1086-1

почти 12 лет назад

Security update for IBM Java 6

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0392-1

почти 12 лет назад

Security update for IBM Java 6

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1086-3

почти 12 лет назад

Security update for IBM Java 7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0344-1

почти 12 лет назад

Security update for IBM Java 7

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2013-0401

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute arbitrary code via vectors related to AWT, as demonstrated by Ben Murphy during a Pwn2Own competition at CanSecWest 2013. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to invocation of the system class loader by the sun.awt.datatransfer.ClassLoaderObjectInputStream class, which allows remote attackers to bypass Java sandbox restrictions.

CVSS2: 10
10%
Средний
больше 12 лет назад
redhat логотип
CVE-2013-0401

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute arbitrary code via vectors related to AWT, as demonstrated by Ben Murphy during a Pwn2Own competition at CanSecWest 2013. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to invocation of the system class loader by the sun.awt.datatransfer.ClassLoaderObjectInputStream class, which allows remote attackers to bypass Java sandbox restrictions.

CVSS2: 6.8
10%
Средний
больше 12 лет назад
nvd логотип
CVE-2013-0401

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute arbitrary code via vectors related to AWT, as demonstrated by Ben Murphy during a Pwn2Own competition at CanSecWest 2013. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to invocation of the system class loader by the sun.awt.datatransfer.ClassLoaderObjectInputStream class, which allows remote attackers to bypass Java sandbox restrictions.

CVSS2: 10
10%
Средний
больше 12 лет назад
debian логотип
CVE-2013-0401

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Updat ...

CVSS2: 10
10%
Средний
больше 12 лет назад
github логотип
GHSA-7fc2-vc87-69w8

The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute arbitrary code via vectors related to AWT, as demonstrated by Ben Murphy during a Pwn2Own competition at CanSecWest 2013. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to invocation of the system class loader by the sun.awt.datatransfer.ClassLoaderObjectInputStream class, which allows remote attackers to bypass Java sandbox restrictions.

10%
Средний
больше 3 лет назад
oracle-oval логотип
ELSA-2013-0770

ELSA-2013-0770: java-1.6.0-openjdk security update (IMPORTANT)

больше 12 лет назад
oracle-oval логотип
ELSA-2013-0752

ELSA-2013-0752: java-1.7.0-openjdk security update (IMPORTANT)

больше 12 лет назад
oracle-oval логотип
ELSA-2013-0751

ELSA-2013-0751: java-1.7.0-openjdk security update (CRITICAL)

больше 12 лет назад
suse-cvrf логотип
SUSE-SU-2015:1086-2

Security update for IBM Java

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1086-4

Security update for IBM Java

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0343-1

Security update for IBM Java

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1086-1

Security update for IBM Java 6

почти 12 лет назад
suse-cvrf логотип
SUSE-SU-2015:0392-1

Security update for IBM Java 6

почти 12 лет назад
suse-cvrf логотип
SUSE-SU-2015:1086-3

Security update for IBM Java 7

почти 12 лет назад
suse-cvrf логотип
SUSE-SU-2015:0344-1

Security update for IBM Java 7

почти 12 лет назад

Уязвимостей на страницу