7.1

CVE-2007-5237

Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to read and modify local files via an untrusted application, aka "two vulnerabilities."

Data is provided by the National Vulnerability Database (NVD)
SunJdk Updateupdate2 Version <= 1.6.0
SunJre Updateupdate1 Version <= 1.6.0
SunJre Updateupdate2 Version <= 1.6.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.88% 0.732
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.1 4.9 9.2
AV:N/AC:H/Au:N/C:C/I:C/A:N