- EPSS 11.7%
- Veröffentlicht 05.11.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows remote attackers to cause a denial of service (memory consum...
- EPSS 10.74%
- Veröffentlicht 05.11.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows remote attackers to cause a denial of service (memory consum...
- EPSS 3.65%
- Veröffentlicht 05.08.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
The audio system in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, does not prevent access to java.lang.System properties by (1) untrusted applets and (2) Java Web Start applications, which...
- EPSS 6.12%
- Veröffentlicht 05.08.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
The SOCKS proxy implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows remote attackers to discover the username of the account that invoked an untrusted (1) applet or (2) ...
CVE-2009-2672
- EPSS 12.99%
- Veröffentlicht 05.08.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, does not prevent access to browser cookies by untrusted (1) applets and (2) Java Web Start applications,...
CVE-2009-2673
- EPSS 11.39%
- Veröffentlicht 05.08.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows remote attackers to bypass intended access restrictions and connect to arbitrary sites via unspec...
CVE-2009-2674
- EPSS 3.98%
- Veröffentlicht 05.08.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in javaws.exe in Sun Java Web Start in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 allows context-dependent attackers to execute arbitrary code via a crafted JPEG image that is not properly handled during dis...
- EPSS 6.84%
- Veröffentlicht 05.08.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in the unpack200 utility in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows context-dependent attackers to gain privileges via unspecified length fields in the header...
CVE-2009-2676
- EPSS 13.09%
- Veröffentlicht 05.08.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in JNLPAppletlauncher in Sun Java SE, and SE for Business, in JDK and JRE 6 Update 14 and earlier and JDK and JRE 5.0 Update 19 and earlier; and Java SE for Business in SDK and JRE 1.4.2_21 and earlier; allows remote attacke...
CVE-2009-1719
- EPSS 3.87%
- Veröffentlicht 16.06.2009 23:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Aqua Look and Feel for Java implementation in Java 1.5 on Mac OS X 10.5 allows remote attackers to execute arbitrary code via a call to the undocumented apple.laf.CColourUIResource constructor with a crafted value in the first argument, which is ...