CVE-2015-4803

Advisory lineage Upstream: 0 Downstream: 31
Modified
Published: 21 Oct 2015, 21:00
Last modified:06 Aug 2024, 06:25

Vulnerability Summary

Overall Risk (default)
low
21/100
CVSS Score
5 MEDIUM
v2.0 (nvd)
EPSS Score
5.8% LOW
6% probability -0.78%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

21 Oct 2015, 21:00
Published
Vulnerability first disclosed
06 Aug 2024, 06:25
Last Modified
Vulnerability information updated

Description

Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4893 and CVE-2015-4911.

CVSS Metrics

  • v2.0MEDIUMScore: 5AV:N/AC:L/Au:N/C:N/I:N/A:P

EPSS Trends

Current EPSS score: 5.80% Percentile: 91%

Affected Systems

  • oraclejdk

    1.6.0:update101 | 1.7.0:update85 | 1.8.0:update51 | 1.8.0:update60

  • oraclejre

    1.6.0:update_101 | 1.7.0:update_85 | 1.8.0:update_51 | 1.8.0:update_60

  • oraclejrockit

    r28.3.7

References (35)