This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:sun:jdk:5.0:update_7
Detail
VendorSunFirst view 2008-03-06
ProductJdkLast view 2009-08-06
Version5.0TypeApplication
Edition 
Language 
Updateupdate_7 
 
CPE Productcpe:/a:sun:jdk

Activity : Yearly

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
 DateAlertAccess VectorAccess ComplexityAuthentification
52009-08-06CVE-2009-2625NetworkLowNone Requ...
102009-08-05CVE-2009-2675NetworkLowNone Requ...
7.52009-08-05CVE-2009-2673NetworkLowNone Requ...
7.52009-08-05CVE-2009-2672NetworkLowNone Requ...
52009-08-05CVE-2009-2671NetworkLowNone Requ...
Hide | Show 20 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
52009-08-05CVE-2009-2670NetworkLowNone Requ...
6.42008-12-05CVE-2008-5360NetworkLowNone Requ...
9.32008-12-05CVE-2008-5359NetworkMediumNone Requ...
9.32008-12-05CVE-2008-5357NetworkMediumNone Requ...
9.32008-12-05CVE-2008-5356NetworkMediumNone Requ...
102008-12-05CVE-2008-5355NetworkLowNone Requ...
9.32008-12-05CVE-2008-5354NetworkMediumNone Requ...
102008-12-05CVE-2008-5353NetworkLowNone Requ...
7.52008-12-05CVE-2008-5351NetworkLowNone Requ...
52008-12-05CVE-2008-5350NetworkLowNone Requ...
7.12008-12-05CVE-2008-5348NetworkMediumNone Requ...
7.12008-12-05CVE-2008-5346NetworkMediumNone Requ...
7.52008-12-05CVE-2008-5345NetworkLowNone Requ...
7.52008-12-05CVE-2008-5344NetworkLowNone Requ...
92008-12-05CVE-2008-5343NetworkLowNone Requ...
52008-12-05CVE-2008-5342NetworkLowNone Requ...
52008-12-05CVE-2008-5341NetworkLowNone Requ...
102008-12-05CVE-2008-5340NetworkLowNone Requ...
52008-12-05CVE-2008-5339NetworkLowNone Requ...

CWE : Common Weakness Enumeration

%idName
48% (14)CWE-264Permissions, Privileges, and Access Controls
17% (5)CWE-200Information Exposure
17% (5)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
3% (1)CWE-287Improper Authentication
3% (1)CWE-189Numeric Errors
Hide | Show 3 More...
%idName
3% (1)CWE-94Failure to Control Generation of Code ('Code Injection')
3% (1)CWE-20Improper Input Validation
3% (1)CWE-16Configuration

Oval Markup Language : Definitions

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalIDName
oval:org.mitre.oval:def:10278Unspecified vulnerability in Sun Java Runtime Environment (JRE) and JDK 6 Upd...
oval:org.mitre.oval:def:5601Java Web Start Bugs Let Remote Users Read/Write Files, Execute Arbitrary Code...
oval:org.mitre.oval:def:10920Unspecified vulnerability in the Java Management Extensions (JMX) management ...
oval:org.mitre.oval:def:9565Multiple unspecified vulnerabilities in Sun Java Runtime Environment (JRE) in...
oval:org.mitre.oval:def:10866Unspecified vulnerability in Sun Java Runtime Environment (JRE) in JDK and JR...
Hide | Show 20 More...
idName
oval:org.mitre.oval:def:10219Unspecified vulnerability in the Virtual Machine in Sun Java Runtime Environm...
oval:org.mitre.oval:def:10541Multiple buffer overflows in Sun Java Web Start in JDK and JRE 6 before Updat...
oval:org.mitre.oval:def:11102Directory traversal vulnerability in Sun Java Web Start in JDK and JRE 6 befo...
oval:org.mitre.oval:def:10454Unspecified vulnerability in Sun Java Web Start in JDK and JRE 5.0 before Upd...
oval:org.mitre.oval:def:9755Unspecified vulnerability in Sun Java Web Start in JDK and JRE 6 before Updat...
oval:org.mitre.oval:def:6409Multiple Security Vulnerabilities in Java Web Start and Java Plug-in May Allo...
oval:org.mitre.oval:def:6627Sun Java Multiple Code Execution and Security Bypass Vulnerabilities
oval:org.mitre.oval:def:6529Java Runtime Environment (JRE) Buffer Overflow in Processing Image Files and ...
oval:org.mitre.oval:def:6359Unspecified vunerability in the BasicService for Java Web Start (JWS) and Jav...
oval:org.mitre.oval:def:5924Sun Java Web Start and Java Plug-in JAR File Privilege Escalation Vulnerability
oval:org.mitre.oval:def:6249Sun Java Web Start and Java Plug-in applet class security bypass
oval:org.mitre.oval:def:6059Sun Java Runtime Environment (JRE) Lets Remote Users Access 'localhost'
oval:org.mitre.oval:def:6629Sun Java Runtime Environment zip File Processing Bug Lets Remote Users Read M...
oval:org.mitre.oval:def:6549Sun Java Runtime Environment and Java Development Kit Multiple Security Vulne...
oval:org.mitre.oval:def:6424Sun Java Runtime Environment Lets Remote Users View Directory Contents
oval:org.mitre.oval:def:6212Java Runtime Environment UTF-8 Decoding Bug May Let Users Bypass Access Restr...
oval:org.mitre.oval:def:6511Sun Java Runtime Environment 'Calendar.readObject' Bug Lets Remote Applets Ga...
oval:org.mitre.oval:def:6537Sun Java Runtime Environment JAR Main-Class manifest entry buffer overflow
oval:org.mitre.oval:def:5664Sun Java Runtime Environment Java Update Fails to Validate Digital Signatures
oval:org.mitre.oval:def:6494Sun Java Runtime Environment TrueType font buffer overflow

Open Source Vulnerability Database (OSVDB)

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
56984Apache Xerces2 Java Malformed XML Input DoS
56788Sun Java JDK / JRE Audio System Unauthorized java.lang.System Properties Access
56786Sun Java JDK / JRE Pack200 JAR File Decoding Inner Class Count Overflow
56785Sun Java JDK / JRE Proxy Mechanism Implementation Arbitrary Host Connection
56784Sun Java JDK / JRE Proxy Mechanism Implementation Unauthorized Browser Cookie...
Hide | Show 20 More...
idDescription
56783Sun Java JDK / JRE SOCKS Proxy Implementation Applet Process Owner Disclosure
50517Sun Java JDK / JRE TrueType Font Processing Integer Overflow
50516Sun Java JDK / JRE TrueType Font Processing Heap Overflow
50514Sun Java JDK / JRE Java Web Start BasicService Arbitrary File Access
50513Sun Java JDK / JRE Applet Classloading Privilege Escalation
50512Sun Java JDK / JRE Jave Web Start / Plug-in HTTP Session Hijacking
50511Sun Java JDK / JRE Java Web Start SingleInstanceImpl Class SI_FILEDIR Propert...
50510Sun Java JDK / JRE Java Web Start (JWS) JNLP File System Properties Override ...
50509Sun Java JDK / JRE Java Web Start Application file: Protocol Arbitrary File A...
50508Sun Java JRE LocalHost Network Access Restriction Bypass
50507Sun Java JDK / JRE ZIP File Parsing Arbitrary Memory Disclosure
50505Sun Java JDK / JRE Kerberos Authentication Unspecified Remote DoS
50503Sun Java JDK / JRE Untrusted Applet User Home Directory Content Listing
50502Sun Java JDK / JRE UTF-8 Decoder Non-shortest Form Sequence Handling Weakness
50500Sun Java JDK / JRE Deserializing Calendar Object Privilege Escalation
50499Sun Java JDK / JRE Command Line Application Overflow
50498Sun Java JDK / JRE Java Update Mechanism Digital Signature Verification Weakness
50497Sun Java JDK / JRE Java Web Start Application JNLP File Handling Socket Restr...
50496Sun Java JDK / JRE Java AWT Library ConvolveOp Operation Image Handling Overflow
50495Sun Java JDK / JRE Environment Temporary File Name Prediction Weakness

ExploitDB Exploits

idDescription
16302Signed Applet Social Engineering Code Exec
16293Sun Java Calendar Deserialization Exploit
9948Sun Java Runtime and Development Kit <= 6 update 10 Calendar Deserialization ...
8753Mac OS X Java applet Remote Deserialization Remote PoC (updated)

Metasploit Exploits

idDescription
2008-12-03Sun Java Calendar Deserialization Privilege Escalation