2.6

CVE-2007-5274

Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK and JRE 1.4.2_15 and earlier, and SDK and JRE 1.3.1_20 and earlier, when Firefox or Opera is used, allows remote attackers to violate the security model for JavaScript outbound connections via a multi-pin DNS rebinding attack dependent on the LiveConnect API, in which JavaScript download relies on DNS resolution by the browser, but JavaScript socket operations rely on separate DNS resolution by a Java Virtual Machine (JVM), a different issue than CVE-2007-5273.  NOTE: this is similar to CVE-2007-5232.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SunJdk Updateupdate2 Version <= 1.6.0
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate1
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate10
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate11
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate12
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate2
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate3
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate4
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate5
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate7
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate8
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.5.0 Updateupdate9
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.6.0 Updateupdate1
   MozillaFirefox
   OperaOpera Browser
SunJdk Version1.6.0 Updateupdate2
   MozillaFirefox
   OperaOpera Browser
SunJdk Version6
   MozillaFirefox
   OperaOpera Browser
SunJdk Version6 Updateupdate_1
   MozillaFirefox
   OperaOpera Browser
SunJre Updateupdate20 Version <= 1.3.1
   MozillaFirefox
   OperaOpera Browser
SunJre Updateupdate15 Version <= 1.4.2
   MozillaFirefox
   OperaOpera Browser
SunJre Updateupdate2 Version <= 1.6.0
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.3.0
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.3.0 Updateupdate5
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.3.1 Updateupdate1
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.3.1 Updateupdate16
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.3.1 Updateupdate18
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.3.1 Updateupdate19
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.3.1 Updateupdate1a
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.1 Updateupdate3
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_1
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_3
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_8
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_9
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_10
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_11
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_12
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_13
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.4.2_14
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate1
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate10
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate11
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate12
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate2
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate3
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate4
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate5
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate6
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate7
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate8
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.5.0 Updateupdate9
   MozillaFirefox
   OperaOpera Browser
SunJre Version1.6.0 Updateupdate_1
   MozillaFirefox
   OperaOpera Browser
SunSdk Version <= 1.3.1_20
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.3.1_01
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.3.1_01a
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.3.1_16
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.3.1_18
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.3.1_19
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_03
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_08
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_09
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_10
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_11
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_12
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_13
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_14
   MozillaFirefox
   OperaOpera Browser
SunSdk Version1.4.2_15
   MozillaFirefox
   OperaOpera Browser
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.78% 0.884
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 2.6 4.9 2.9
AV:N/AC:H/Au:N/C:N/I:P/A:N