SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2010-4468

Unspecified vulnerability in the Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, and 5.0 Update 27 and earlier, allows remote untrusted Java Web Start applications and untrusted Java applets to affect…

MEDIUM 4.0EPSS 1.96%

Does this matter?

Lower severity and a low EPSS score (1.96%). Track it; it rarely justifies an emergency change on its own.

Description

Unspecified vulnerability in the Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, and 5.0 Update 27 and earlier, allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality and integrity via unknown vectors related to JDBC.

CVSS 2.0
4.0 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:N
EPSS
1.96% probability · 79th percentile
CISA KEV
Not listed
Affected
sun/jre · sun/jdk
Source
secalert_us@oracle.com

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.