Vulnerability Name: | CVE-2012-0508 (CCN-73189) | ||||||||
Assigned: | 2012-02-14 | ||||||||
Published: | 2012-02-14 | ||||||||
Updated: | 2019-10-09 | ||||||||
Summary: | Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX, 1.3.0 and earlier, and 1.2.2 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. Per: http://www.oracle.com/technetwork/topics/security/javacpufeb2012-366318.html 'Applies to client deployments of Java.' | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C) 7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
7.4 High (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2012-0508 Source: CCN Type: HP Security Bulletin HPSBMU02797 SSRT100867 HP Network Node Manager i (NNMi) v9.1x Running JDK for HP-UX, Linux, Solaris, and Windows, Remote Unauthorized Information Disclosure, Modification, Denial of Service (DoS) Source: HP Type: Mailing List, Third Party Advisory HPSBMU02799 Source: HP Type: Mailing List, Third Party Advisory SSRT100867 Source: HP Type: Mailing List, Third Party Advisory SSRT100919 Source: CCN Type: SA48009 Oracle Java SE Multiple Vulnerabilities Source: CCN Type: SA49953 HP Network Node Manager Java JDK / JRE Multiple Vulnerabilities Source: CCN Type: SA49966 HP Network Node Manager Java JDK / JRE Multiple Vulnerabilities Source: CCN Type: Oracle Java SE Critical Patch Update Advisory - February 2012 Oracle Java SE Critical Patch Update Advisory - February 2012 Source: CONFIRM Type: Vendor Advisory http://www.oracle.com/technetwork/topics/security/javacpufeb2012-366318.html Source: CCN Type: OSVDB ID: 79234 Oracle Java SE JavaFX Main method Arbitrary Argument Remote Code Execution Source: CCN Type: BID-52010 Oracle JavaFX CVE-2012-0508 Remote Code Execution Vulnerability Source: XF Type: UNKNOWN javase-javafx-cve20120508(73189) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |