Vulnerability Name: | CVE-2007-3716 (CCN-35332) | ||||||||
Assigned: | 2007-07-10 | ||||||||
Published: | 2007-07-10 | ||||||||
Updated: | 2018-10-15 | ||||||||
Summary: | The Java XML Digital Signature implementation in Sun JDK and JRE 6 before Update 2 does not properly process XSLT stylesheets in XSLT transforms in XML signatures, which allows context-dependent attackers to execute arbitrary code via a crafted stylesheet, a related issue to CVE-2007-3715. | ||||||||
CVSS v3 Severity: | 5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C) 6.9 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
3.8 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-20 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-3716 Source: BEA Type: UNKNOWN BEA07-177.00 Source: OSVDB Type: UNKNOWN 36664 Source: CCN Type: SA26031 Sun Java JRE/JDK Processing of XSLT Stylesheets in XML Signatures Vulnerability Source: SECUNIA Type: Vendor Advisory 26031 Source: CCN Type: SA26631 BEA JRockit Multiple Vulnerabilities Source: SECUNIA Type: Vendor Advisory 26631 Source: SECUNIA Type: Vendor Advisory 26933 Source: CCN Type: SECTRACK ID: 1018365 Java Runtime Environment XSLT Stylesheet Bug Lets Remote Users Execute Arbitrary Code Source: CCN Type: Sun Alert ID: 102993 Java Runtime Environment Does Not Securely Process XSLT Stylesheets Contained in XML Signatures Source: SUNALERT Type: Patch 102993 Source: CCN Type: ASA-2007-321 Java Runtime Environment Does Not Securely Process XSLT Stylesheets Contained in XML Signatures (Sun 102993) Source: CCN Type: GLSA-200709-15 BEA JRockit: Multiple vulnerabilities Source: GENTOO Type: UNKNOWN GLSA-200709-15 Source: MISC Type: UNKNOWN http://www.isecpartners.com/advisories/2007-04-dsig.txt Source: MISC Type: UNKNOWN http://www.isecpartners.com/files/XMLDSIG_Command_Injection.pdf Source: CCN Type: OSVDB ID: 36664 Sun Java JDK / JRE XML Digital Signature XSLT Stylesheet Handling Arbitrary Code Execution Source: CCN Type: OSVDB ID: 37248 Sun Java System Web / Application Server Crafted XSLT Stylesheet Arbitrary Java Method Execution Source: BUGTRAQ Type: UNKNOWN 20070712 Command Injection in XML Digital Signatures Source: BUGTRAQ Type: UNKNOWN 20070712 Whitepaper: Command Injection in XML Digital Signatures and Encryption Source: SECTRACK Type: UNKNOWN 1018365 Source: VUPEN Type: Vendor Advisory ADV-2007-2492 Source: VUPEN Type: Vendor Advisory ADV-2007-3009 Source: XF Type: UNKNOWN sun-java-xslt-code-execution(35332) Source: CCN Type: BEA07-177.00 Multiple Security Vulnerabilities in the Java Runtime Environment Source: CCN Type: IBM Security Bulletin 6551876 (Cloud Pak for Security) Cloud Pak for Security uses packages that are vulnerable to multiple CVEs | ||||||||
Vulnerable Configuration: | Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |