Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sun java 6 vulnerabilities and exploits
(subscribe to this query)
516
VMScore
CVE-2009-1104
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and previous versions; 6 Update 12 and previous versions; and 1.4.2_19 and previous versions does not prevent Javascript that is loaded from the localhost from connecting to other p...
Sun Java
605
VMScore
CVE-2009-2718
The Abstract Window Toolkit (AWT) implementation in Sun Java SE 6 before Update 15 on X11 does not impose the intended constraint on distance from the window border to the Security Warning Icon, which makes it easier for context-dependent malicious users to trick a user into inte...
Sun Java Se 6
668
VMScore
CVE-2008-3115
Secure Static Versioning in Sun Java JDK and JRE 6 Update 6 and previous versions, and 5.0 Update 6 through 15, does not properly prevent execution of applets on older JRE releases, which might allow remote malicious users to exploit vulnerabilities in these older releases.
Sun Jdk 5.0
Sun Jdk 6
Sun Jre 5.0
Sun Jre 6
Sun Jdk
Sun Jre
445
VMScore
CVE-2009-2720
Unspecified vulnerability in the javax.swing.plaf.synth.SynthContext.isSubregion method in the Swing implementation in Sun Java SE 6 before Update 15 allows context-dependent malicious users to cause a denial of service (NullPointerException in the Jemmy library) via unknown vect...
Sun Java Se
668
VMScore
CVE-2009-2716
The plugin functionality in Sun Java SE 6 before Update 15 does not properly implement version selection, which allows context-dependent malicious users to leverage vulnerabilities in "old zip and certificate handling" and have unspecified other impact via unknown vecto...
Sun Java Se
445
VMScore
CVE-2009-2719
The Java Web Start implementation in Sun Java SE 6 before Update 15 allows context-dependent malicious users to cause a denial of service (NullPointerException) via a crafted .jnlp file, as demonstrated by the jnlp_file/appletDesc/index.html#misc test in the Technology Compatibil...
Sun Java Se
935
VMScore
CVE-2009-1672
The Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 13 allows remote malicious users to (1) execute arbitrary code via a .jnlp URL in the argument to the launch method, and might allow remote malicious users to la...
Sun Jre 6
1 EDB exploit
935
VMScore
CVE-2009-1671
Multiple buffer overflows in the Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 13 allow remote malicious users to execute arbitrary code via a long string argument to the (1) setInstallerType, (2) setAdditionalP...
Sun Jre 6
1 EDB exploit
383
VMScore
CVE-2009-0793
cmsxform.c in LittleCMS (aka lcms or liblcms) 1.18, as used in OpenJDK and other products, allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) via a crafted image that triggers execution of incorrect code for "transform...
Sun Openjdk 6
Littlecms Lcms 1.18
445
VMScore
CVE-2010-0389
The admin server in Sun Java System Web Server 7.0 Update 6 allows remote malicious users to cause a denial of service (NULL pointer dereference and daemon crash) via an HTTP request that lacks a method token.
Sun Java System Web Server 7.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
bypass
open redirect
CVE-2024-4358
CVE-2024-24199
CVE-2024-5550
CVE-2024-5305
CVE-2024-30373
CVE-2024-1800
deserialization
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »