This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:sun:jdk:1.6.0.210:update21
Detail
VendorSunFirst view 2007-07-11
ProductJdkLast view2012-10-16
Version1.6.0.210TypeApplication
Edition 
Language 
Updateupdate21 
 
CPE Productcpe:/a:sun:jdk

Activity : Overall

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
 DateAlertAccess VectorAccess ComplexityAuthentication
7.62012-10-16CVE-2012-5089NetworkHighNone Requ...
102012-10-16CVE-2012-5086NetworkLowNone Requ...
02012-10-16CVE-2012-5085NetworkMediumRequires ...
7.62012-10-16CVE-2012-5084NetworkHighNone Requ...
102012-10-16CVE-2012-5083NetworkLowNone Requ...
Hide | Show 20 More...
 DateAlertAccess VectorAccess ComplexityAuthentication
52012-10-16CVE-2012-5081NetworkLowNone Requ...
52012-10-16CVE-2012-5079NetworkLowNone Requ...
2.62012-10-16CVE-2012-5077NetworkHighNone Requ...
52012-10-16CVE-2012-5075NetworkLowNone Requ...
52012-10-16CVE-2012-5073NetworkLowNone Requ...
52012-10-16CVE-2012-5072NetworkLowNone Requ...
6.42012-10-16CVE-2012-5071NetworkLowNone Requ...
5.82012-10-16CVE-2012-5069NetworkMediumNone Requ...
7.52012-10-16CVE-2012-5068NetworkLowNone Requ...
6.42012-10-16CVE-2012-4416NetworkLowNone Requ...
2.62012-10-16CVE-2012-3216NetworkHighNone Requ...
7.52012-10-16CVE-2012-3159NetworkLowNone Requ...
102012-10-16CVE-2012-3143NetworkLowNone Requ...
102012-10-16CVE-2012-1533NetworkLowNone Requ...
102012-10-16CVE-2012-1532NetworkLowNone Requ...
102012-10-16CVE-2012-1531NetworkLowNone Requ...
102012-08-27CVE-2012-4681NetworkLowNone Requ...
52009-08-06CVE-2009-2625NetworkLowNone Requ...
102009-08-05CVE-2009-2675NetworkLowNone Requ...

CWE : Common Weakness Enumeration

%idName
61% (19)CWE-264Permissions, Privileges, and Access Controls
12% (4)CWE-200Information Exposure
9% (3)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
3% (1)CWE-287Improper Authentication
3% (1)CWE-189Numeric Errors
Hide | Show 3 More...
%idName
3% (1)CWE-94Failure to Control Generation of Code ('Code Injection')
3% (1)CWE-20Improper Input Validation
3% (1)CWE-16Configuration

Oval Markup Language : Definitions

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalIDName
oval:org.mitre.oval:def:21593RHSA-2012:1384: java-1.6.0-openjdk security update (Critical)
oval:org.mitre.oval:def:21586RHSA-2012:1386: java-1.7.0-openjdk security update (Important)
oval:org.mitre.oval:def:21422RHSA-2012:1385: java-1.6.0-openjdk security update (Important)
oval:org.mitre.oval:def:21199RHSA-2012:1391: java-1.7.0-oracle security update (Critical)
oval:org.mitre.oval:def:20645RHSA-2012:1392: java-1.6.0-sun security update (Critical)
Hide | Show 20 More...
idName
oval:org.mitre.oval:def:18994HP-UX Running Java, Remote Unauthorized Access, Disclosure of Information, an...
oval:org.mitre.oval:def:16506Unspecified vulnerability in the Java Runtime Environment (JRE) component in ...
oval:org.mitre.oval:def:23907ELSA-2012:1386: java-1.7.0-openjdk security update (Important)
oval:org.mitre.oval:def:23866ELSA-2012:1392: java-1.6.0-sun security update (Critical)
oval:org.mitre.oval:def:23780ELSA-2012:1384: java-1.6.0-openjdk security update (Critical)
oval:org.mitre.oval:def:23740ELSA-2012:1391: java-1.7.0-oracle security update (Critical)
oval:org.mitre.oval:def:22450ELSA-2012:1385: java-1.6.0-openjdk security update (Important)
oval:org.mitre.oval:def:27810DEPRECATED: ELSA-2012-1385 -- java-1.6.0-openjdk security update (important)
oval:org.mitre.oval:def:27804DEPRECATED: ELSA-2012-1384 -- java-1.6.0-openjdk security update (critical)
oval:org.mitre.oval:def:6249Sun Java Web Start and Java Plug-in applet class security bypass
oval:org.mitre.oval:def:11274Unspecified vulnerability in the JAX-WS client and service in Sun Java Runtim...
oval:org.mitre.oval:def:19283HP-UX Running Java, Remote Unauthorized Access, Disclosure of Information, an...
oval:org.mitre.oval:def:16466Unspecified vulnerability in the Java Runtime Environment (JRE) component in ...
oval:org.mitre.oval:def:8022HP-UX Running Java, Remote Increase in Privilege, Denial of Service and Other...
oval:org.mitre.oval:def:11326The audio system in Sun Java Runtime Environment (JRE) in JDK and JRE 6 befor...
oval:org.mitre.oval:def:6409Multiple Security Vulnerabilities in Java Web Start and Java Plug-in May Allo...
oval:org.mitre.oval:def:19918HP-UX Running Java, Remote Unauthorized Access, Disclosure of Information, an...
oval:org.mitre.oval:def:16648Unspecified vulnerability in the Java Runtime Environment (JRE) component in ...
oval:org.mitre.oval:def:10920Unspecified vulnerability in the Java Management Extensions (JMX) management ...
oval:org.mitre.oval:def:22657ELSA-2008:0891: java-1.5.0-ibm security update (Moderate)

SAINT Exploits

DescriptionLink
Java Runtime Environment JAR manifest Main Class buffer overflowMore info here
Oracle Java findMethod findClass Security BypassMore info here

Open Source Vulnerability Database (OSVDB)

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
56984Apache Xerces2 Java Malformed XML Input DoS
56788Sun Java JDK / JRE Audio System Unauthorized java.lang.System Properties Access
56786Sun Java JDK / JRE Pack200 JAR File Decoding Inner Class Count Overflow
56785Sun Java JDK / JRE Proxy Mechanism Implementation Arbitrary Host Connection
56784Sun Java JDK / JRE Proxy Mechanism Implementation Unauthorized Browser Cookie...
Hide | Show 20 More...
idDescription
56783Sun Java JDK / JRE SOCKS Proxy Implementation Applet Process Owner Disclosure
50516Sun Java JDK / JRE TrueType Font Processing Heap Overflow
50515Sun Java JDK / JRE GIF Image Decoding Memory Corruption
50514Sun Java JDK / JRE Java Web Start BasicService Arbitrary File Access
50513Sun Java JDK / JRE Applet Classloading Privilege Escalation
50512Sun Java JDK / JRE Jave Web Start / Plug-in HTTP Session Hijacking
50511Sun Java JDK / JRE Java Web Start SingleInstanceImpl Class SI_FILEDIR Propert...
50510Sun Java JDK / JRE Java Web Start (JWS) JNLP File System Properties Override ...
50509Sun Java JDK / JRE Java Web Start Application file: Protocol Arbitrary File A...
50506Sun Java JDK / JRE JAX-WS / JAXB Packages Internal Classes Applet Privilege E...
50505Sun Java JDK / JRE Kerberos Authentication Unspecified Remote DoS
50504Sun Java JDK / JRE RSA Public Key Processing Resource Consumption DoS
50503Sun Java JDK / JRE Untrusted Applet User Home Directory Content Listing
50502Sun Java JDK / JRE UTF-8 Decoder Non-shortest Form Sequence Handling Weakness
50501Sun Java JDK / JRE Unpack200 JAR Utility Privilege Escalation
50500Sun Java JDK / JRE Deserializing Calendar Object Privilege Escalation
50499Sun Java JDK / JRE Command Line Application Overflow
50498Sun Java JDK / JRE Java Update Mechanism Digital Signature Verification Weakness
50497Sun Java JDK / JRE Java Web Start Application JNLP File Handling Socket Restr...
46967Sun Java JDK / JRE Java Management Extensions (JMX) Management Agent Remote P...

ExploitDB Exploits

idDescription
16302Signed Applet Social Engineering Code Exec
16293Sun Java Calendar Deserialization Exploit
9948Sun Java Runtime and Development Kit <= 6 update 10 Calendar Deserializati...
8753Mac OS X Java applet Remote Deserialization Remote PoC (updated)

OpenVAS Exploits

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
2012-12-13Name : SuSE Update for java-1_6_0-openjdk openSUSE-SU-2012:1423-1 (java-1_6_0-openjdk)
File : nvt/gb_suse_2012_1423_1.nasl
2012-12-13Name : SuSE Update for java-1_6_0-openjdk openSUSE-SU-2012:1424-1 (java-1_6_0-openjdk)
File : nvt/gb_suse_2012_1424_1.nasl
2012-11-02Name : Mandriva Update for java-1.6.0-openjdk MDVSA-2012:169 (java-1.6.0-openjdk)
File : nvt/gb_mandriva_MDVSA_2012_169.nasl
2012-10-29Name : Ubuntu Update for openjdk-7 USN-1619-1
File : nvt/gb_ubuntu_USN_1619_1.nasl
2012-10-19Name : RedHat Update for java-1.6.0-openjdk RHSA-2012:1384-01
File : nvt/gb_RHSA-2012_1384-01_java-1.6.0-openjdk.nasl
Hide | Show 20 More...
idDescription
2012-10-19Name : RedHat Update for java-1.6.0-openjdk RHSA-2012:1385-01
File : nvt/gb_RHSA-2012_1385-01_java-1.6.0-openjdk.nasl
2012-10-19Name : RedHat Update for java-1.7.0-openjdk RHSA-2012:1386-01
File : nvt/gb_RHSA-2012_1386-01_java-1.7.0-openjdk.nasl
2012-10-19Name : Oracle Java SE JRE Multiple Unspecified Vulnerabilities-01 Oct (Windows)
File : nvt/gb_oracle_java_se_mult_vuln01_oct12_win.nasl
2012-10-19Name : Fedora Update for java-1.7.0-openjdk FEDORA-2012-16346
File : nvt/gb_fedora_2012_16346_java-1.7.0-openjdk_fc17.nasl
2012-10-19Name : Oracle Java SE JRE Multiple Unspecified Vulnerabilities-02 oct12 (Windows)
File : nvt/gb_oracle_java_se_mult_vuln02_oct12_win.nasl
2012-10-19Name : Fedora Update for java-1.7.0-openjdk FEDORA-2012-16351
File : nvt/gb_fedora_2012_16351_java-1.7.0-openjdk_fc16.nasl
2012-10-19Name : Oracle Java SE JRE Multiple Unspecified Vulnerabilities-04 oct12 (Windows)
File : nvt/gb_oracle_java_se_mult_vuln04_oct12_win.nasl
2012-10-19Name : CentOS Update for java CESA-2012:1384 centos6
File : nvt/gb_CESA-2012_1384_java_centos6.nasl
2012-10-19Name : CentOS Update for java CESA-2012:1385 centos5
File : nvt/gb_CESA-2012_1385_java_centos5.nasl
2012-10-19Name : CentOS Update for java CESA-2012:1386 centos6
File : nvt/gb_CESA-2012_1386_java_centos6.nasl
2012-09-21Name : Java for Mac OS X 10.6 Update 10
File : nvt/gb_macosx_java_10_6_upd_10.nasl
2012-09-04Name : RedHat Update for java-1.7.0-openjdk RHSA-2012:1223-01
File : nvt/gb_RHSA-2012_1223-01_java-1.7.0-openjdk.nasl
2012-09-04Name : CentOS Update for java CESA-2012:1223 centos6
File : nvt/gb_CESA-2012_1223_java_centos6.nasl
2012-09-04Name : Fedora Update for java-1.7.0-openjdk FEDORA-2012-13131
File : nvt/gb_fedora_2012_13131_java-1.7.0-openjdk_fc17.nasl
2012-09-04Name : Fedora Update for java-1.7.0-openjdk FEDORA-2012-13138
File : nvt/gb_fedora_2012_13138_java-1.7.0-openjdk_fc16.nasl
2012-09-03Name : Oracle Java SE JRE AWT Component Unspecified Vulnerability - (Windows)
File : nvt/gb_oracle_java_se_jre_awt_comp_unspecified_vuln_win.nasl
2012-09-03Name : Oracle Java SE JRE Multiple Remote Code Execution Vulnerabilities - (Windows)
File : nvt/gb_oracle_java_se_jre_mult_code_exec_vuln_win.nasl
2012-08-30Name : FreeBSD Ports: openjdk
File : nvt/freebsd_openjdk.nasl
2012-06-06Name : RedHat Update for xerces-j2 RHSA-2011:0858-01
File : nvt/gb_RHSA-2011_0858-01_xerces-j2.nasl
2011-08-09Name : CentOS Update for xerces-j2 CESA-2009:1615 centos5 i386
File : nvt/gb_CESA-2009_1615_xerces-j2_centos5_i386.nasl

Information Assurance Vulnerability Management (IAVM)

idDescription
2012-A-0136Multiple Vulnerabilities in Juniper Network Management Products
Severity : Category I - VMSKEY : V0033662
2009-A-0105Multiple Vulnerabilities in VMware Products
Severity : Category I - VMSKEY : V0021867

Snort® IPS/IDS

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
DateDescription
2019-05-21Oracle Java privileged protection domain exploitation attempt
RuleID : 49846 - Type : FILE-JAVA - Revision : 1
2019-05-21Oracle Java privileged protection domain exploitation attempt
RuleID : 49845 - Type : FILE-JAVA - Revision : 1
2018-04-05limited RSA ciphersuite list - possible Bleichenbacher SSL attack attempt
RuleID : 45830 - Type : SERVER-OTHER - Revision : 1
2018-01-17limited RSA ciphersuite list - possible Bleichenbacher SSL attack attempt
RuleID : 45201 - Type : SERVER-OTHER - Revision : 2
2018-01-17limited RSA ciphersuite list - possible Bleichenbacher SSL attack attempt
RuleID : 45200 - Type : SERVER-OTHER - Revision : 2
Hide | Show 20 More...
DateDescription
2018-01-17limited RSA ciphersuite list - possible Bleichenbacher SSL attack attempt
RuleID : 45199 - Type : SERVER-OTHER - Revision : 2
2014-02-21Styx exploit kit eot outbound connection
RuleID : 29453 - Type : EXPLOIT-KIT - Revision : 2
2014-02-21Styx exploit kit landing page request
RuleID : 29452 - Type : EXPLOIT-KIT - Revision : 2
2014-02-21Styx exploit kit outbound jar request
RuleID : 29451 - Type : EXPLOIT-KIT - Revision : 2
2014-02-21Styx exploit kit outbound connection attempt
RuleID : 29450 - Type : EXPLOIT-KIT - Revision : 2
2014-02-21Styx exploit kit landing page
RuleID : 29449 - Type : EXPLOIT-KIT - Revision : 2
2014-02-21Styx exploit kit landing page
RuleID : 29448 - Type : EXPLOIT-KIT - Revision : 2
2014-02-21Styx exploit kit jar outbound connection
RuleID : 29446 - Type : EXPLOIT-KIT - Revision : 7
2014-02-21Styx exploit kit fonts download page
RuleID : 29445 - Type : EXPLOIT-KIT - Revision : 2
2014-01-30Stamp exploit kit PDF exploit retrieval attempt
RuleID : 29131 - Type : EXPLOIT-KIT - Revision : 2
2014-01-30Stamp exploit kit malicious payload download attempt
RuleID : 29130 - Type : EXPLOIT-KIT - Revision : 2
2014-01-30Stamp exploit kit jar exploit download - specific structure
RuleID : 29129 - Type : EXPLOIT-KIT - Revision : 2
2014-01-30Stamp exploit kit plugin detection page
RuleID : 29128 - Type : EXPLOIT-KIT - Revision : 2
2014-01-10Styx exploit kit landing page request
RuleID : 28478 - Type : EXPLOIT-KIT - Revision : 4
2014-01-10Styx exploit kit outbound pdf request
RuleID : 28477 - Type : EXPLOIT-KIT - Revision : 5
2014-01-10Multiple exploit kit Payload detection - readme.dll
RuleID : 27898 - Type : EXPLOIT-KIT - Revision : 2
2014-01-10Multiple exploit kit Payload detection - calc.dll
RuleID : 27897 - Type : EXPLOIT-KIT - Revision : 2
2014-01-10Multiple exploit kit Payload detection - contacts.dll
RuleID : 27896 - Type : EXPLOIT-KIT - Revision : 2
2014-01-10Multiple exploit kit Payload detection - info.dll
RuleID : 27895 - Type : EXPLOIT-KIT - Revision : 2
2014-01-10Multiple exploit kit Payload detection - about.dll
RuleID : 27894 - Type : EXPLOIT-KIT - Revision : 2

Nessus® Vulnerability Scanner

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
2016-11-30Name : The remote FreeBSD host is missing a security-related update.
File : freebsd_pkg_18449f92ab3911e68011005056925db4.nasl - Type : ACT_GATHER_INFO
2016-03-08Name : The remote VMware ESX host is missing a security-related patch.
File : vmware_VMSA-2010-0002_remote.nasl - Type : ACT_GATHER_INFO
2016-03-04Name : The remote VMware ESX / ESXi host is missing a security-related patch.
File : vmware_esx_VMSA-2013-0003_remote.nasl - Type : ACT_GATHER_INFO
2016-03-03Name : The remote host is missing a security-related patch.
File : vmware_VMSA-2009-0014_remote.nasl - Type : ACT_GATHER_INFO
2016-03-03Name : The remote host is missing a security-related patch.
File : vmware_VMSA-2009-0016_remote.nasl - Type : ACT_GATHER_INFO
Hide | Show 20 More...
idDescription
2015-05-20Name : The remote SUSE host is missing one or more security updates.
File : suse_SU-2012-1489-1.nasl - Type : ACT_GATHER_INFO
2015-05-20Name : The remote SUSE host is missing one or more security updates.
File : suse_SU-2012-1489-2.nasl - Type : ACT_GATHER_INFO
2015-05-20Name : The remote SUSE host is missing one or more security updates.
File : suse_SU-2012-1490-1.nasl - Type : ACT_GATHER_INFO
2014-12-22Name : The remote device is affected by multiple vulnerabilities.
File : juniper_space_jsa10627.nasl - Type : ACT_GATHER_INFO
2014-12-15Name : The remote device is missing a vendor-supplied security patch.
File : f5_bigip_SOL15905.nasl - Type : ACT_GATHER_INFO
2014-11-08Name : The remote Red Hat host is missing a security update.
File : redhat-RHSA-2012-1537.nasl - Type : ACT_GATHER_INFO
2014-11-08Name : The remote Red Hat host is missing one or more security updates.
File : redhat-RHSA-2013-1455.nasl - Type : ACT_GATHER_INFO
2014-11-08Name : The remote Red Hat host is missing one or more security updates.
File : redhat-RHSA-2013-1456.nasl - Type : ACT_GATHER_INFO
2014-08-22Name : The remote host is affected by multiple vulnerabilities.
File : juniper_nsm_jsa10642.nasl - Type : ACT_GATHER_INFO
2014-07-18Name : The remote Windows host contains a programming platform that is potentially a...
File : oracle_jrockit_cpu_oct_2012.nasl - Type : ACT_GATHER_INFO
2014-06-30Name : The remote Gentoo host is missing one or more security-related patches.
File : gentoo_GLSA-201406-32.nasl - Type : ACT_GATHER_INFO
2014-06-13Name : The remote openSUSE host is missing a security update.
File : openSUSE-2012-592.nasl - Type : ACT_GATHER_INFO
2014-06-13Name : The remote openSUSE host is missing a security update.
File : openSUSE-2012-749.nasl - Type : ACT_GATHER_INFO
2014-06-13Name : The remote openSUSE host is missing a security update.
File : openSUSE-2012-754.nasl - Type : ACT_GATHER_INFO
2014-06-13Name : The remote openSUSE host is missing a security update.
File : openSUSE-2012-755.nasl - Type : ACT_GATHER_INFO
2014-01-27Name : The remote Gentoo host is missing one or more security-related patches.
File : gentoo_GLSA-201401-30.nasl - Type : ACT_GATHER_INFO
2013-09-13Name : The remote host is affected by multiple vulnerabilities.
File : juniper_nsm_psn_2012_08_689.nasl - Type : ACT_GATHER_INFO
2013-09-04Name : The remote Amazon Linux AMI host is missing a security update.
File : ala_ALAS-2012-136.nasl - Type : ACT_GATHER_INFO
2013-09-04Name : The remote Amazon Linux AMI host is missing a security update.
File : ala_ALAS-2012-137.nasl - Type : ACT_GATHER_INFO
2013-07-12Name : The remote Oracle Linux host is missing one or more security updates.
File : oraclelinux_ELSA-2009-1615.nasl - Type : ACT_GATHER_INFO