7.5
CVE-2020-2816
- EPSS 0.4%
- Veröffentlicht 15.04.2020 14:15:29
- Zuletzt bearbeitet 21.11.2024 05:26:21
- Quelle secalert_us@oracle.com
- Teams Watchlist Login
- Unerledigt Login
Vulnerability in the Java SE product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 11.0.6 and 14. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 7.5 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N).
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netapp ≫ 7-mode Transition Tool Version-
Netapp ≫ Active Iq Unified Manager SwPlatformwindows Version >= 7.3
Netapp ≫ Active Iq Unified Manager SwPlatformvsphere Version >= 9.5
Netapp ≫ Cloud Backup Version-
Netapp ≫ E-series Performance Analyzer Version-
Netapp ≫ E-series Santricity Os Controller Version >= 11.0.0 <= 11.60.1
Netapp ≫ E-series Santricity Web Services Version- SwPlatformweb_services_proxy
Netapp ≫ Oncommand Insight Version-
Netapp ≫ Oncommand Workflow Automation Version-
Netapp ≫ Plug-in For Symantec Netbackup Version-
Netapp ≫ Santricity Unified Manager Version-
Netapp ≫ Snapmanager Version- SwPlatformsap
Netapp ≫ Snapmanager Version- Update- SwPlatformoracle
Netapp ≫ Steelstore Cloud Integrated Storage Version-
Netapp ≫ Storagegrid Version >= 9.0.0 <= 9.0.4
Netapp ≫ Storagegrid Version-
Canonical ≫ Ubuntu Linux Version16.04 SwEditionesm
Canonical ≫ Ubuntu Linux Version18.04 SwEditionlts
Canonical ≫ Ubuntu Linux Version19.10
Debian ≫ Debian Linux Version10.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.4% | 0.6 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
secalert_us@oracle.com | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
|