SUN
SUN Java: vulnerabilidades y CVE
SUN Java tiene 14 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE14
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2010-0887 | Alta (10) | 9.4% | — | 20 abr 2010 | Unspecified vulnerability in the New Java Plug-in component in Oracle Java SE and Java for Business JDK and JRE 6 Update 18 and 19 allows remote attackers to affect confidentiality, integrity, and availability via… |
| CVE-2009-1107 | Media (4.3) | 2.8% | — | 25 mar 2009 | The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12 and earlier, and 5.0 Update 17 and earlier, allows remote attackers to trick a user into trusting a signed applet via… |
| CVE-2009-1105 | Alta (7.5) | 3.6% | — | 25 mar 2009 | The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 allows user-assisted remote attackers to cause a trusted applet to run in an older JRE version, which can be… |
| CVE-2009-1104 | Media (5.8) | 2.2% | — | 25 mar 2009 | The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier; 6 Update 12 and earlier; and 1.4.2_19 and earlier does not prevent Javascript that is loaded from the… |
| CVE-2009-1103 | Media (6.4) | 4.5% | — | 25 mar 2009 | Unspecified vulnerability in the Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier; 6 Update 12 and earlier; 1.4.2_19 and earlier; and 1.3.1_24 and earlier allows… |
| CVE-2009-1102 | Media (6.4) | 4.6% | — | 25 mar 2009 | Unspecified vulnerability in the Virtual Machine in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12 and earlier allows remote attackers to access files and execute arbitrary code via unknown… |
| CVE-2008-3440 | Alta (7.5) | 2.4% | — | 1 ago 2008 | Sun Java 1.6.0_03 and earlier versions, and possibly later versions, does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as… |
| CVE-2005-2738 | Media (5) | 1.8% | — | 31 dic 2005 | Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X does not prevent multiple programs from opening the same port as a Java ServerSocket, which allows local users to operate a Java program that intercepts network data… |
| CVE-2005-2529 | Alta (10) | 2.3% | — | 31 dic 2005 | Unspecified vulnerability in Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X allows local users to gain privileges via unspecified attack vectors relating to "the utility used to update Java shared archives." |
| CVE-2005-2530 | Alta (10) | 2.5% | — | 31 dic 2005 | Unspecified vulnerability in Java 1.3.1 before 1.3.1_16 on Apple Mac OS X allows an untrusted applet to gain privileges, related to "Mac OS X specific extensions." |
| CVE-2005-2527 | Baja (1.2) | 0.32% | — | 31 dic 2005 | Race condition in Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X allows local users to corrupt files or create arbitrary files via unspecified attack vectors related to a temporary directory, possibly due to a… |
| CVE-2003-1134 | Baja (2.1) | 0.80% | — | 31 dic 2003 | Sun Java 1.3.1, 1.4.1, and 1.4.2 allows local users to cause a denial of service (JVM crash), possibly by calling the ClassDepth function with a null parameter, which causes a crash instead of generating a null pointer… |
| CVE-1999-0440 | Alta (7.5) | 3.6% | — | 1 mar 1999 | The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages. |
| CVE-1999-0142 | Alta (7.5) | 1.6% | — | 1 mar 1996 | The Java Applet Security Manager implementation in Netscape Navigator 2.0 and Java Developer's Kit 1.0 allows an applet to connect to arbitrary hosts. |