[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2014-8891Date: (C)2015-03-08   (M)2023-12-22


Unspecified vulnerability in the Java Virtual Machine (JVM) in IBM SDK, Java Technology Edition 5.0 before SR16-FP9, 6 before SR16-FP3, 6R1 before SR8-FP3, 7 before SR8-FP10, and 7R1 before SR2-FP10 allows remote attackers to escape the Java sandbox and execute arbitrary code via unspecified vectors related to the security manager.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
RHSA-2015:0136
RHSA-2015:0264
SUSE-SU-2015:0304
SUSE-SU-2015:0306
SUSE-SU-2015:0343
SUSE-SU-2015:0344
SUSE-SU-2015:0345
SUSE-SU-2015:0376
SUSE-SU-2015:0392
SUSE-SU-2015:1073
http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_February_2015
https://bugzilla.redhat.com/show_bug.cgi?id=1189142
https://www-304.ibm.com/support/docview.wss?uid=swg21695474

OVAL    6
oval:org.secpod.oval:def:23618
oval:org.secpod.oval:def:505556
oval:org.secpod.oval:def:505491
oval:org.secpod.oval:def:505583
...

© SecPod Technologies