Количество 11
Количество 11
CVE-2019-10182
It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from <jar/> elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user.
CVE-2019-10182
It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from <jar/> elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user.
CVE-2019-10182
It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from <jar/> elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user.
CVE-2019-10182
It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly ...
GHSA-cqfc-r7qj-5fgq
It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from <jar/> elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user.
BDU:2019-02869
Уязвимость плагина IcedTea-Web, связанная с ошибками при обработке JNLP файлов, позволяющая нарушителю записать произвольные файлы в файловую систему устройства
openSUSE-SU-2019:1911-1
Security update for icedtea-web
SUSE-SU-2022:1259-1
Security update for icedtea-web
SUSE-SU-2019:2033-1
Security update for icedtea-web
ELSA-2019-2004
ELSA-2019-2004: icedtea-web security update (IMPORTANT)
ELSA-2019-2003
ELSA-2019-2003: icedtea-web security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-10182 It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from <jar/> elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user. | CVSS3: 8.2 | 1% Низкий | больше 6 лет назад | |
CVE-2019-10182 It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from <jar/> elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user. | CVSS3: 8.2 | 1% Низкий | больше 6 лет назад | |
CVE-2019-10182 It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from <jar/> elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user. | CVSS3: 8.2 | 1% Низкий | больше 6 лет назад | |
CVE-2019-10182 It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly ... | CVSS3: 8.2 | 1% Низкий | больше 6 лет назад | |
GHSA-cqfc-r7qj-5fgq It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from <jar/> elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user. | CVSS3: 6.5 | 1% Низкий | больше 3 лет назад | |
BDU:2019-02869 Уязвимость плагина IcedTea-Web, связанная с ошибками при обработке JNLP файлов, позволяющая нарушителю записать произвольные файлы в файловую систему устройства | CVSS3: 8.2 | 1% Низкий | больше 6 лет назад | |
openSUSE-SU-2019:1911-1 Security update for icedtea-web | больше 6 лет назад | |||
SUSE-SU-2022:1259-1 Security update for icedtea-web | почти 4 года назад | |||
SUSE-SU-2019:2033-1 Security update for icedtea-web | больше 6 лет назад | |||
ELSA-2019-2004 ELSA-2019-2004: icedtea-web security update (IMPORTANT) | больше 6 лет назад | |||
ELSA-2019-2003 ELSA-2019-2003: icedtea-web security update (IMPORTANT) | больше 6 лет назад |
Уязвимостей на страницу