7.5
CVE-2011-0706
- EPSS 1.33%
- Published 19.02.2011 01:00:03
- Last modified 11.04.2025 00:51:21
- Source secalert@redhat.com
- Teams watchlist Login
- Open Login
The JNLPClassLoader class in IcedTea-Web before 1.0.1, as used in OpenJDK Runtime Environment 1.6.0, allows remote attackers to gain privileges via unknown vectors related to multiple signers and the assignment of "an inappropriate security descriptor."
Data is provided by the National Vulnerability Database (NVD)
Redhat ≫ Icedtea-web Version1.0
Redhat ≫ Icedtea-web Version1.0 Updatepre
Redhat ≫ Icedtea-web Version1.0.1 Updatepre
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 1.33% | 0.781 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|