PT-2014-1253 · Oracle+2 · Java Development Kit+4

Published

2014-01-15

·

Updated

2022-05-13

·

CVE-2014-0418

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Java Runtime Environment (affected versions not specified) Java Development Kit (affected versions not specified)
Description The issue is related to a component of the Java platform, specifically the Deployment component. It allows a remote attacker to compromise the confidentiality and integrity of data.
Recommendations For Java Runtime Environment, consider disabling the Deployment component until a patch is available. For Java Development Kit, restrict access to the Deployment component to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2014-00473
BDU:2014-00474
CVE-2014-0418
HPSBUX02972
HPSBUX02973
RHSA-2014:0030
RHSA-2014:0414
RHSA-2014_0030
RHSA-2014_0414

Affected Products

Hp-Ux
Java Development Kit
Java Platform
Java Runtime Environment
Red Hat