Search Results (Refine Search)
- Keyword (text search): cpe:2.3:a:oracle:jdk:1.6.0:update91:*:*:*:*:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2013-4578 |
jarsigner in OpenJDK and Oracle Java SE before 7u51 allows remote attackers to bypass a code-signing protection mechanism and inject unsigned bytecode into a signed JAR file by leveraging improper file validation. Published: December 29, 2017; 5:29:00 PM -0500 |
V3.0: 5.3 MEDIUM V2.0: 5.0 MEDIUM |
CVE-2015-0492 |
Unspecified vulnerability in Oracle Java SE 7u76 and 8u40, and JavaFX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-0484. Published: April 16, 2015; 12:59:43 PM -0400 |
V3.x:(not available) V2.0: 9.3 HIGH |
CVE-2015-0491 |
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and Java FX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2015-0459. Published: April 16, 2015; 12:59:42 PM -0400 |
V3.x:(not available) V2.0: 10.0 HIGH |
CVE-2015-0488 |
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JRockit R28.3.5, allows remote attackers to affect availability via vectors related to JSSE. Published: April 16, 2015; 12:59:39 PM -0400 |
V3.x:(not available) V2.0: 5.0 MEDIUM |
CVE-2015-0480 |
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect integrity and availability via unknown vectors related to Tools. Published: April 16, 2015; 12:59:33 PM -0400 |
V3.x:(not available) V2.0: 5.8 MEDIUM |
CVE-2015-0478 |
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JRockit R28.3.5, allows remote attackers to affect confidentiality via vectors related to JCE. Published: April 16, 2015; 12:59:32 PM -0400 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
CVE-2015-0477 |
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect integrity via unknown vectors related to Beans. Published: April 16, 2015; 12:59:31 PM -0400 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
CVE-2015-0469 |
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. Published: April 16, 2015; 12:59:23 PM -0400 |
V3.x:(not available) V2.0: 10.0 HIGH |
CVE-2015-0460 |
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot. Published: April 16, 2015; 12:59:17 PM -0400 |
V3.x:(not available) V2.0: 9.3 HIGH |
CVE-2015-0459 |
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JavaFX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2015-0491. Published: April 16, 2015; 12:59:16 PM -0400 |
V3.x:(not available) V2.0: 10.0 HIGH |
CVE-2015-0458 |
Unspecified vulnerability in in Oracle Java SE 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment. Published: April 16, 2015; 12:59:16 PM -0400 |
V3.x:(not available) V2.0: 7.6 HIGH |
CVE-2012-5373 |
Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm, a different vulnerability than CVE-2012-2739. Published: November 28, 2012; 8:03:10 AM -0500 |
V3.x:(not available) V2.0: 5.0 MEDIUM |
CVE-2007-3503 |
The Javadoc tool in Sun JDK 6 and JDK 5.0 Update 11 can generate HTML documentation pages that contain cross-site scripting (XSS) vulnerabilities, which allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Published: June 29, 2007; 9:30:00 PM -0400 |
V3.x:(not available) V2.0: 4.3 MEDIUM |