Логотип exploitDog
bind:CVE-2015-5236
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-5236

Количество 5

Количество 5

ubuntu логотип

CVE-2015-5236

больше 3 лет назад

It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks. As the specified codebase does not have to match the applet's actual origin, this allowed malicious site to bypass SOP via spoofed codebase value.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2015-5236

около 4 лет назад

It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks. As the specified codebase does not have to match the applet's actual origin, this allowed malicious site to bypass SOP via spoofed codebase value.

CVSS2: 5.8
EPSS: Низкий
nvd логотип

CVE-2015-5236

больше 3 лет назад

It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks. As the specified codebase does not have to match the applet's actual origin, this allowed malicious site to bypass SOP via spoofed codebase value.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2015-5236

больше 3 лет назад

It was discovered that the IcedTea-Web used codebase attribute of the ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-f95f-r783-xxx3

больше 3 лет назад

It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks. As the specified codebase does not have to match the applet's actual origin, this allowed malicious site to bypass SOP via spoofed codebase value.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-5236

It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks. As the specified codebase does not have to match the applet's actual origin, this allowed malicious site to bypass SOP via spoofed codebase value.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2015-5236

It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks. As the specified codebase does not have to match the applet's actual origin, this allowed malicious site to bypass SOP via spoofed codebase value.

CVSS2: 5.8
0%
Низкий
около 4 лет назад
nvd логотип
CVE-2015-5236

It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks. As the specified codebase does not have to match the applet's actual origin, this allowed malicious site to bypass SOP via spoofed codebase value.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2015-5236

It was discovered that the IcedTea-Web used codebase attribute of the ...

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-f95f-r783-xxx3

It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java applet in the Same Origin Policy (SOP) checks. As the specified codebase does not have to match the applet's actual origin, this allowed malicious site to bypass SOP via spoofed codebase value.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу