9.3

CVE-2009-3865

The launch method in the Deployment Toolkit plugin in Java Runtime Environment (JRE) in Sun Java SE in JDK and JRE 6 before Update 17 allows remote attackers to execute arbitrary commands via a crafted web page, aka Bug Id 6869752.

Data is provided by the National Vulnerability Database (NVD)
SunJdk Version1.6.0 Updateupdate1
SunJdk Version1.6.0 Updateupdate1_b06
SunJdk Version1.6.0 Updateupdate10
SunJdk Version1.6.0 Updateupdate11
SunJdk Version1.6.0 Updateupdate12
SunJdk Version1.6.0 Updateupdate13
SunJdk Version1.6.0 Updateupdate14
SunJdk Version1.6.0 Updateupdate15
SunJdk Version1.6.0 Updateupdate16
SunJdk Version1.6.0 Updateupdate2
SunJdk Version1.6.0 Updateupdate3
SunJdk Version1.6.0 Updateupdate4
SunJdk Version1.6.0 Updateupdate5
SunJdk Version1.6.0 Updateupdate6
SunJdk Version1.6.0 Updateupdate7
SunJdk Version1.6.0 Updateupdate8
SunJdk Version1.6.0 Updateupdate9
SunJre Version1.6.0 Updateupdate_1
SunJre Version1.6.0 Updateupdate_2
SunJre Version1.6.0 Updateupdate_3
SunJre Version1.6.0 Updateupdate10
SunJre Version1.6.0 Updateupdate11
SunJre Version1.6.0 Updateupdate12
SunJre Version1.6.0 Updateupdate13
SunJre Version1.6.0 Updateupdate14
SunJre Version1.6.0 Updateupdate15
SunJre Version1.6.0 Updateupdate16
SunJre Version1.6.0 Updateupdate4
SunJre Version1.6.0 Updateupdate5
SunJre Version1.6.0 Updateupdate6
SunJre Version1.6.0 Updateupdate7
SunJre Version1.6.0 Updateupdate8
SunJre Version1.6.0 Updateupdate9
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.7% 0.806
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CWE-94 Improper Control of Generation of Code ('Code Injection')

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.