CVE-2010-4452
Unspecified vulnerability in the Deployment component in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 82.8%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Unspecified vulnerability in the Deployment component in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 82.75% probability · 100th percentile
- CISA KEV
- Not listed
- Affected
- sun/jre · sun/jdk
- Source
- secalert_us@oracle.com
References
- http://marc.info/?l=bugtraq&m=134254866602253&w=2
- http://marc.info/?l=bugtraq&m=134254957702612&w=2
- http://secunia.com/advisories/44954
- http://securityreason.com/securityalert/8145
- http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html
- http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.htmlPatch, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2011-0282.html
- http://www.redhat.com/support/errata/RHSA-2011-0880.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12927
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14230
- http://marc.info/?l=bugtraq&m=134254866602253&w=2
- http://marc.info/?l=bugtraq&m=134254957702612&w=2
- http://secunia.com/advisories/44954
- http://securityreason.com/securityalert/8145
- http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html
- http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.htmlPatch, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2011-0282.html
- http://www.redhat.com/support/errata/RHSA-2011-0880.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12927
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14230
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.