Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and previous versions and 6 Update 45 and previous versions allows remote malicious users to affect integrity via vectors related to JMX. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue is due to a missing check for "package access" by the MBeanServer Introspector.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
oracle jre 1.7.0 |
||
oracle jre |
||
oracle jdk 1.7.0 |
||
oracle jdk |
||
sun jre 1.6.0 |
||
oracle jre 1.6.0 |
||
sun jdk 1.6.0 |
||
oracle jdk 1.6.0 |