Логотип exploitDog
bind:CVE-2013-2461
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-2461

Количество 10

Количество 10

ubuntu логотип

CVE-2013-2461

около 12 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. NOTE: the previous information is from the June and July 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass verification of XML signatures via vectors related to a "Missing check for [a] valid DOMCanonicalizationMethod canonicalization algorithm."

CVSS2: 7.5
EPSS: Средний
redhat логотип

CVE-2013-2461

около 12 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. NOTE: the previous information is from the June and July 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass verification of XML signatures via vectors related to a "Missing check for [a] valid DOMCanonicalizationMethod canonicalization algorithm."

CVSS2: 6.8
EPSS: Средний
nvd логотип

CVE-2013-2461

около 12 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. NOTE: the previous information is from the June and July 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass verification of XML signatures via vectors related to a "Missing check for [a] valid DOMCanonicalizationMethod canonicalization algorithm."

CVSS2: 7.5
EPSS: Средний
debian логотип

CVE-2013-2461

около 12 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) compon ...

CVSS2: 7.5
EPSS: Средний
github логотип

GHSA-xp47-mpxp-9h7v

больше 3 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. NOTE: the previous information is from the June and July 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass verification of XML signatures via vectors related to a "Missing check for [a] valid DOMCanonicalizationMethod canonicalization algorithm."

EPSS: Средний
oracle-oval логотип

ELSA-2013-1014

около 12 лет назад

ELSA-2013-1014: java-1.6.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0958

около 12 лет назад

ELSA-2013-0958: java-1.7.0-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0957

около 12 лет назад

ELSA-2013-0957: java-1.7.0-openjdk security update (CRITICAL)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0833-1

почти 11 лет назад

Security update for Java OpenJDK

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0336-1

почти 11 лет назад

Security update for Java OpenJDK

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2013-2461

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. NOTE: the previous information is from the June and July 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass verification of XML signatures via vectors related to a "Missing check for [a] valid DOMCanonicalizationMethod canonicalization algorithm."

CVSS2: 7.5
64%
Средний
около 12 лет назад
redhat логотип
CVE-2013-2461

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. NOTE: the previous information is from the June and July 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass verification of XML signatures via vectors related to a "Missing check for [a] valid DOMCanonicalizationMethod canonicalization algorithm."

CVSS2: 6.8
64%
Средний
около 12 лет назад
nvd логотип
CVE-2013-2461

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. NOTE: the previous information is from the June and July 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass verification of XML signatures via vectors related to a "Missing check for [a] valid DOMCanonicalizationMethod canonicalization algorithm."

CVSS2: 7.5
64%
Средний
около 12 лет назад
debian логотип
CVE-2013-2461

Unspecified vulnerability in the Java Runtime Environment (JRE) compon ...

CVSS2: 7.5
64%
Средний
около 12 лет назад
github логотип
GHSA-xp47-mpxp-9h7v

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. NOTE: the previous information is from the June and July 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass verification of XML signatures via vectors related to a "Missing check for [a] valid DOMCanonicalizationMethod canonicalization algorithm."

64%
Средний
больше 3 лет назад
oracle-oval логотип
ELSA-2013-1014

ELSA-2013-1014: java-1.6.0-openjdk security update (IMPORTANT)

около 12 лет назад
oracle-oval логотип
ELSA-2013-0958

ELSA-2013-0958: java-1.7.0-openjdk security update (IMPORTANT)

около 12 лет назад
oracle-oval логотип
ELSA-2013-0957

ELSA-2013-0957: java-1.7.0-openjdk security update (CRITICAL)

около 12 лет назад
suse-cvrf логотип
SUSE-SU-2015:0833-1

Security update for Java OpenJDK

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0336-1

Security update for Java OpenJDK

почти 11 лет назад

Уязвимостей на страницу