Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sun jre vulnerabilities and exploits
(subscribe to this query)
1000
VMScore
CVE-2009-3866
The Java Web Start Installer in Sun Java SE in JDK and JRE 6 before Update 17 does not properly use security model permissions when removing installer extensions, which allows remote malicious users to execute arbitrary code by modifying a certain JNLP file to have a URL field th...
Sun Jdk 1.6.0
Sun Jre 1.6.0
1000
VMScore
CVE-2008-5353
The Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and previous versions; JDK and JRE 5.0 Update 16 and previous versions; and SDK and JRE 1.4.2_18 and previous versions does not properly enforce context of ZoneInfo objects during deserialization, which allows rem...
Sun Jdk 6
Sun Jre 6
Sun Jre 5.0
Sun Jre
Sun Jdk 5.0
Sun Sdk
Sun Sdk 1.4.2 14
Sun Jre 1.4.2 13
Sun Sdk 1.4.2 10
Sun Jre 1.4.2 9
Sun Sdk 1.4.2 6
Sun Jre 1.4.2 5
Sun Jre 1.4.2 1
Sun Sdk 1.4.2 1
Sun Jre 1.4.2 16
Sun Sdk 1.4.2 16
Sun Sdk 1.4.2 12
Sun Jre 1.4.2 11
Sun Sdk 1.4.2 8
Sun Jre 1.4.2 7
Sun Sdk 1.4.2 4
Sun Jre 1.4.2 3
4 EDB exploits
2 Github repositories
3 Articles
1000
VMScore
CVE-2007-5019
Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote malicious users to have an unknown impact via a long argument to the dnsResolve (isInstalled.dnsResolve) method.
Sun Java Web Start
Sun Jre 1.6.0 0
Sun Jre 1.6.0 10
Sun Sdk 1.3.0
1 EDB exploit
945
VMScore
CVE-2009-3867
Stack-based buffer overflow in the HsbParser.getSoundBank function in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x prior to 1.3.1_27, and SDK and JRE 1.4.x prior to 1.4.2_24 allows remote malicious users to execute arbitrary c...
Sun Jdk 1.6.0
Sun Jre 1.6.0
Sun Jdk 1.5.0
Sun Jre 1.5.0
Sun Sdk 1.4.2 6
Sun Sdk 1.4.2 9
Sun Sdk 1.4.2 8
Sun Sdk 1.4.2 11
Sun Sdk 1.4.2 14
Sun Sdk 1.4.2 03
Sun Sdk 1.4.2 12
Sun Sdk 1.4.2 3
Sun Sdk 1.4.2 5
Sun Sdk 1.4.2 20
Sun Sdk 1.4.2 17
Sun Sdk 1.4.2 2
Sun Sdk 1.4.2 13
Sun Sdk 1.4.2 10
Sun Sdk 1.4.2 09
Sun Jre 1.4.2 12
Sun Jre 1.4.2 13
Sun Jre 1.4.2 6
3 EDB exploits
7 Articles
935
VMScore
CVE-2010-1423
Argument injection vulnerability in the URI handler in (a) Java NPAPI plugin and (b) Java Deployment Toolkit in Java 6 Update 10, 19, and other versions, when running on Windows and possibly on Linux, allows remote malicious users to execute arbitrary code via the (1) -J or (2) -...
Oracle Jre 1.6.0
Oracle Jdk 1.6.0
Oracle Jdk
Oracle Jre
1 EDB exploit
1 Article
935
VMScore
CVE-2009-3869
Stack-based buffer overflow in the setDiffICM function in the Abstract Window Toolkit (AWT) in Java Runtime Environment (JRE) in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x prior to 1.3.1_27, and SDK and JRE 1.4.x prior to 1....
Sun Jdk 1.6.0
Sun Jre 1.6.0
Sun Jdk 1.5.0
Sun Jre 1.5.0
Sun Sdk 1.4.2 9
Sun Sdk 1.4.2 8
Sun Sdk 1.4.2 11
Sun Sdk 1.4.2 14
Sun Sdk 1.4.2 03
Sun Sdk 1.4.2 1
Sun Sdk 1.4.2 10
Sun Sdk 1.4.2 04
Sun Sdk 1.4.2 22
Sun Jre 1.4.2 15
Sun Jre 1.4.2 7
Sun Jre 1.4.2 1
Sun Jre 1.4.2 07
Sun Jre 1.4.2 21
Sun Sdk 1.4.2 7
Sun Sdk 1.4.2 6
Sun Sdk 1.4.2 19
Sun Sdk 1.4.2 16
1 EDB exploit
1 Article
935
VMScore
CVE-2009-1671
Multiple buffer overflows in the Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 13 allow remote malicious users to execute arbitrary code via a long string argument to the (1) setInstallerType, (2) setAdditionalP...
Sun Jre 6
1 EDB exploit
935
VMScore
CVE-2009-1672
The Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 13 allows remote malicious users to (1) execute arbitrary code via a .jnlp URL in the argument to the launch method, and might allow remote malicious users to la...
Sun Jre 6
1 EDB exploit
935
VMScore
CVE-2008-1193
Unspecified vulnerability in Java Runtime Environment Image Parsing Library in Sun JDK and JRE 6 Update 4 and previous versions, and 5.0 Update 14 and previous versions, allows remote malicious users to gain privileges via an untrusted application.
Sun Jdk 1.5.0
Sun Jdk 1.6.0
Sun Jre 1.5.0
Sun Jre 1.6.0
1 EDB exploit
935
VMScore
CVE-2007-4381
Unspecified vulnerability in the font parsing implementation in Sun JDK and JRE 5.0 Update 9 and previous versions, and SDK and JRE 1.4.2_14 and previous versions, allows remote malicious users to perform unauthorized actions via an applet that grants certain privileges to itself...
Sun Jdk
Sun Jre
Sun Sdk
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32886
insecure direct object reference
CVE-2024-34342
file inclusion
CVE-2024-34562
CVE-2024-34347
CVE-2024-26026
CVE-2024-4647
unprivileged
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »