CVE-2008-1192

Advisory lineage Upstream: 0 Downstream: 5
Modified
Published: 06 Mar 2008, 21:00
Last modified:07 Aug 2024, 08:08

Vulnerability Summary

Overall Risk (default)
medium
30/100
CVSS Score
6.8 MEDIUM
v2.0 (nvd)
EPSS Score
13.8% MEDIUM
14% probability +0.74%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

06 Mar 2008, 21:00
Published
Vulnerability first disclosed
07 Aug 2024, 08:08
Last Modified
Vulnerability information updated

Description

Unspecified vulnerability in the Java Plug-in for Sun JDK and JRE 6 Update 4 and earlier, and 5.0 Update 14 and earlier; and SDK and JRE 1.4.2_16 and earlier, and 1.3.1_21 and earlier; allows remote attackers to bypass the same origin policy and "execute local applications" via unknown vectors.

CVSS Metrics

  • v2.0MEDIUMScore: 6.8AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS Trends

Current EPSS score: 13.80% Percentile: 94%

Techniques & Countermeasures

  • CWE-2547PK - Security Features

    Software security is not security software. Here we're concerned with topics like authentication, access control, confidentiality, cryptography, and privilege management.

Affected Systems

  • sunjdk

    1.5.0 | 1.5.0:update1 | 1.5.0:update10 | 1.5.0:update11 | 1.5.0:update12 | 1.5.0:update13 | 1.5.0:update14 | 1.5.0:update2 | 1.5.0:update3 | 1.5.0:update4 | 1.5.0:update5 | 1.5.0:update6 | 1.5.0:update7 | 1.5.0:update8 | 1.5.0:update9 | 1.6.0 | 1.6.0:update_3 | 1.6.0:update_4

  • sunjre

    1.3.1 | 1.3.1_2 | 1.3.1_03 | 1.3.1_04 | 1.3.1_05 | 1.3.1_06 | 1.3.1_07 | 1.3.1_08 | 1.3.1_09 | 1.3.1_10 | 1.3.1_11 | 1.3.1_12 | 1.3.1_13 | 1.3.1_14 | 1.3.1_15 | 1.3.1_16 | 1.3.1_17 | 1.3.1_18 | 1.3.1_19 | 1.3.1_20 | 1.3.1_21 | 1.4.2 | 1.4.2_1 | 1.4.2_2 | 1.4.2_3 | 1.4.2_4 | 1.4.2_5 | 1.4.2_6 | 1.4.2_7 | 1.4.2_8 | 1.4.2_9 | 1.4.2_10 | 1.4.2_11 | 1.4.2_12 | 1.4.2_13 | 1.4.2_14 | 1.4.2_15 | 1.4.2_16 | 1.5.0 | 1.5.0:update1 | 1.5.0:update10 | 1.5.0:update11 | 1.5.0:update12 | 1.5.0:update13 | 1.5.0:update14 | 1.5.0:update2 | 1.5.0:update3 | 1.5.0:update4 | 1.5.0:update5 | 1.5.0:update6 | 1.5.0:update7 | 1.5.0:update8 | 1.5.0:update9 | 1.6.0 | 1.6.0:update_1 | 1.6.0:update_2 | 1.6.0:update_3 | 1.6.0:update_4

  • sunsdk

    1.3.1 | 1.3.1_01 | 1.3.1_01a | 1.3.1_02 | 1.3.1_03 | 1.3.1_04 | 1.3.1_05 | 1.3.1_06 | 1.3.1_07 | 1.3.1_08 | 1.3.1_09 | 1.3.1_10 | 1.3.1_11 | 1.3.1_12 | 1.3.1_13 | 1.3.1_14 | 1.3.1_15 | 1.3.1_16 | 1.3.1_17 | 1.3.1_18 | 1.3.1_19 | 1.3.1_20 | 1.3.1_21 | 1.4.2 | 1.4.2_1 | 1.4.2_2 | 1.4.2_3 | 1.4.2_4 | 1.4.2_5 | 1.4.2_6 | 1.4.2_7 | 1.4.2_8 | 1.4.2_9 | 1.4.2_10 | 1.4.2_11 | 1.4.2_12 | 1.4.2_13 | 1.4.2_14 | 1.4.2_15 | 1.4.2_16

References (32)