This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:sun:jdk:6:update_10
Detail
VendorSunFirst view 2008-12-04
ProductJdkLast view 2009-08-06
Version6TypeApplication
Edition 
Language 
Updateupdate_10 
 
CPE Productcpe:/a:sun:jdk

Activity : Yearly

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
 DateAlertAccess VectorAccess ComplexityAuthentification
52009-08-06CVE-2009-2625NetworkLowNone Requ...
102009-08-05CVE-2009-2675NetworkLowNone Requ...
7.52009-08-05CVE-2009-2674NetworkLowNone Requ...
7.52009-08-05CVE-2009-2673NetworkLowNone Requ...
7.52009-08-05CVE-2009-2672NetworkLowNone Requ...
Hide | Show 20 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
52009-08-05CVE-2009-2671NetworkLowNone Requ...
52009-08-05CVE-2009-2670NetworkLowNone Requ...
6.42008-12-05CVE-2008-5360NetworkLowNone Requ...
9.32008-12-05CVE-2008-5359NetworkMediumNone Requ...
9.32008-12-05CVE-2008-5358NetworkMediumNone Requ...
9.32008-12-05CVE-2008-5357NetworkMediumNone Requ...
9.32008-12-05CVE-2008-5356NetworkMediumNone Requ...
102008-12-05CVE-2008-5355NetworkLowNone Requ...
9.32008-12-05CVE-2008-5354NetworkMediumNone Requ...
102008-12-05CVE-2008-5353NetworkLowNone Requ...
9.32008-12-05CVE-2008-5352NetworkMediumNone Requ...
7.52008-12-05CVE-2008-5351NetworkLowNone Requ...
52008-12-05CVE-2008-5350NetworkLowNone Requ...
7.12008-12-05CVE-2008-5349NetworkMediumNone Requ...
7.12008-12-05CVE-2008-5348NetworkMediumNone Requ...
7.52008-12-05CVE-2008-5347NetworkLowNone Requ...
7.12008-12-05CVE-2008-5346NetworkMediumNone Requ...
7.52008-12-05CVE-2008-5345NetworkLowNone Requ...
7.52008-12-05CVE-2008-5344NetworkLowNone Requ...

CWE : Common Weakness Enumeration

%idName
42% (9)CWE-264Permissions, Privileges, and Access Controls
19% (4)CWE-200Information Exposure
19% (4)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
9% (2)CWE-189Numeric Errors
4% (1)CWE-287Improper Authentication
Hide | Show 1 More...
%idName
4% (1)CWE-94Failure to Control Generation of Code ('Code Injection')

Oval Markup Language : Definitions

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalIDName
oval:org.mitre.oval:def:5601Java Web Start Bugs Let Remote Users Read/Write Files, Execute Arbitrary Code...
oval:org.mitre.oval:def:6409Multiple Security Vulnerabilities in Java Web Start and Java Plug-in May Allo...
oval:org.mitre.oval:def:6627Sun Java Multiple Code Execution and Security Bypass Vulnerabilities
oval:org.mitre.oval:def:6529Java Runtime Environment (JRE) Buffer Overflow in Processing Image Files and ...
oval:org.mitre.oval:def:6359Unspecified vunerability in the BasicService for Java Web Start (JWS) and Jav...
Hide | Show 20 More...
idName
oval:org.mitre.oval:def:5924Sun Java Web Start and Java Plug-in JAR File Privilege Escalation Vulnerability
oval:org.mitre.oval:def:6249Sun Java Web Start and Java Plug-in applet class security bypass
oval:org.mitre.oval:def:6059Sun Java Runtime Environment (JRE) Lets Remote Users Access 'localhost'
oval:org.mitre.oval:def:6629Sun Java Runtime Environment zip File Processing Bug Lets Remote Users Read M...
oval:org.mitre.oval:def:5633Sun Java Runtime Environment JAX-WS and JAXB Lets Remote Applets Gain Elevate...
oval:org.mitre.oval:def:6549Sun Java Runtime Environment and Java Development Kit Multiple Security Vulne...
oval:org.mitre.oval:def:5843Sun Java Runtime Environment RSA Public Key Processing Bug Lets Remote Users ...
oval:org.mitre.oval:def:6424Sun Java Runtime Environment Lets Remote Users View Directory Contents
oval:org.mitre.oval:def:6212Java Runtime Environment UTF-8 Decoding Bug May Let Users Bypass Access Restr...
oval:org.mitre.oval:def:6383Sun Java Runtime Environment Buffer Overflow in unpack200 Utility Lets Remote...
oval:org.mitre.oval:def:6511Sun Java Runtime Environment 'Calendar.readObject' Bug Lets Remote Applets Ga...
oval:org.mitre.oval:def:6537Sun Java Runtime Environment JAR Main-Class manifest entry buffer overflow
oval:org.mitre.oval:def:5664Sun Java Runtime Environment Java Update Fails to Validate Digital Signatures
oval:org.mitre.oval:def:6494Sun Java Runtime Environment TrueType font buffer overflow
oval:org.mitre.oval:def:6505Sun Java Runtime Environment TrueType font integer overflow
oval:org.mitre.oval:def:6319Sun Java Runtime Environment GIF images code execution
oval:org.mitre.oval:def:5841Sun Java Runtime Environment image processing code buffer overflow
oval:org.mitre.oval:def:6596Sun Java Runtime Environment temporary files weak security
oval:org.mitre.oval:def:9356XMLScanner.java in Apache Xerces2 Java, as used in Sun Java Runtime Environme...
oval:org.mitre.oval:def:8520HP-UX Running Java, Remote Increase in Privilege, Denial of Service and Other...

Open Source Vulnerability Database (OSVDB)

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
56984Apache Xerces2 Java Malformed XML Input DoS
56788Sun Java JDK / JRE Audio System Unauthorized java.lang.System Properties Access
56787Sun Java JDK / JRE WebStart (javaws.exe) JPEG Decompression Overflow
56786Sun Java JDK / JRE Pack200 JAR File Decoding Inner Class Count Overflow
56785Sun Java JDK / JRE Proxy Mechanism Implementation Arbitrary Host Connection
Hide | Show 20 More...
idDescription
56784Sun Java JDK / JRE Proxy Mechanism Implementation Unauthorized Browser Cookie...
56783Sun Java JDK / JRE SOCKS Proxy Implementation Applet Process Owner Disclosure
50517Sun Java JDK / JRE TrueType Font Processing Integer Overflow
50516Sun Java JDK / JRE TrueType Font Processing Heap Overflow
50515Sun Java JDK / JRE GIF Image Decoding Memory Corruption
50514Sun Java JDK / JRE Java Web Start BasicService Arbitrary File Access
50513Sun Java JDK / JRE Applet Classloading Privilege Escalation
50512Sun Java JDK / JRE Jave Web Start / Plug-in HTTP Session Hijacking
50511Sun Java JDK / JRE Java Web Start SingleInstanceImpl Class SI_FILEDIR Propert...
50510Sun Java JDK / JRE Java Web Start (JWS) JNLP File System Properties Override ...
50509Sun Java JDK / JRE Java Web Start Application file: Protocol Arbitrary File A...
50508Sun Java JRE LocalHost Network Access Restriction Bypass
50507Sun Java JDK / JRE ZIP File Parsing Arbitrary Memory Disclosure
50506Sun Java JDK / JRE JAX-WS / JAXB Packages Internal Classes Applet Privilege E...
50505Sun Java JDK / JRE Kerberos Authentication Unspecified Remote DoS
50504Sun Java JDK / JRE RSA Public Key Processing Resource Consumption DoS
50503Sun Java JDK / JRE Untrusted Applet User Home Directory Content Listing
50502Sun Java JDK / JRE UTF-8 Decoder Non-shortest Form Sequence Handling Weakness
50501Sun Java JDK / JRE Unpack200 JAR Utility Privilege Escalation
50500Sun Java JDK / JRE Deserializing Calendar Object Privilege Escalation

ExploitDB Exploits

idDescription
16302Signed Applet Social Engineering Code Exec
16293Sun Java Calendar Deserialization Exploit
9948Sun Java Runtime and Development Kit <= 6 update 10 Calendar Deserialization ...
8753Mac OS X Java applet Remote Deserialization Remote PoC (updated)

Metasploit Exploits

idDescription
2008-12-03Sun Java Calendar Deserialization Privilege Escalation