- EPSS 1.83%
- Veröffentlicht 10.08.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Java Management Extensions (JMX) implementation in Sun Java SE 6 before Update 15, and OpenJDK, does not properly enforce OpenType checks, which allows context-dependent attackers to bypass intended access restrictions by leveraging finalizer res...
- EPSS 7.93%
- Veröffentlicht 10.08.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
JDK13Services.getProviders in Sun Java SE 5.0 before Update 20 and 6 before Update 15, and OpenJDK, grants full privileges to instances of unspecified object types, which allows context-dependent attackers to bypass intended access restrictions via a...
- EPSS 4.37%
- Veröffentlicht 10.08.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The encoder in Sun Java SE 6 before Update 15, and OpenJDK, grants read access to private variables with unspecified names, which allows context-dependent attackers to obtain sensitive information via an untrusted (1) applet or (2) application.
CVE-2009-2676
- EPSS 13.09%
- Veröffentlicht 05.08.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in JNLPAppletlauncher in Sun Java SE, and SE for Business, in JDK and JRE 6 Update 14 and earlier and JDK and JRE 5.0 Update 19 and earlier; and Java SE for Business in SDK and JRE 1.4.2_21 and earlier; allows remote attacke...