5.1
CVSSv2

CVE-2018-3149

Published: 17/10/2018 Updated: 27/06/2022
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
CVSS v3 Base Score: 8.3 | Impact Score: 6 | Exploitability Score: 1.6
VMScore: 457
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, JRockit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g. through a web service which supplies data to the APIs. CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oracle jdk 11.0.0

oracle jre 11.0.0

oracle jdk 1.8.0

oracle jdk 1.7.0

oracle jdk 1.6.0

oracle jre 1.6.0

oracle jre 1.7.0

oracle jre 1.8.0

oracle jrockit r28.3.19

redhat enterprise linux desktop 7.0

redhat enterprise linux workstation 7.0

redhat satellite 5.7

redhat enterprise linux server 7.0

redhat enterprise linux desktop 6.0

redhat enterprise linux server 6.0

redhat enterprise linux workstation 6.0

redhat enterprise linux server eus 7.5

redhat satellite 5.6

redhat satellite 5.8

redhat enterprise linux server aus 7.6

redhat enterprise linux server tus 7.6

redhat enterprise linux eus 7.6

debian debian linux 8.0

debian debian linux 9.0

canonical ubuntu linux 18.04

canonical ubuntu linux 18.10

canonical ubuntu linux 14.04

canonical ubuntu linux 16.04

hp xp7 command view

hp xp7 command view 8.6.4-00

Vendor Advisories

Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in denial of service, sandbox bypass, incomplete TLS identity verification, information disclosure or the execution of arbitrary code For the stable distribution (stretch), these problems have been fixed in version 8u181-b13-2~deb9u1 ...
Several security issues were fixed in OpenJDK 7 ...
Several security issues were fixed in OpenJDK ...
Synopsis Critical: java-180-openjdk security update Type/Severity Security Advisory: Critical Topic An update for java-180-openjdk is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring System ...
Synopsis Important: java-160-sun security update Type/Severity Security Advisory: Important Topic An update for java-160-sun is now available for Oracle Java for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Sco ...
Synopsis Critical: java-171-ibm security update Type/Severity Security Advisory: Critical Topic An update for java-171-ibm is now available for Red Hat Enterprise Linux 6 SupplementaryRed Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring ...
Synopsis Critical: java-11-openjdk security update Type/Severity Security Advisory: Critical Topic An update for java-11-openjdk is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring System (CVSS ...
Synopsis Moderate: java-171-ibm security update Type/Severity Security Advisory: Moderate Topic An update for java-171-ibm is now available for Red Hat Satellite 56 and Red Hat Satellite 57Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability S ...
Synopsis Critical: java-171-ibm security update Type/Severity Security Advisory: Critical Topic An update for java-171-ibm is now available for Red Hat Enterprise Linux 7 SupplementaryRed Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring ...
Synopsis Critical: java-180-oracle security update Type/Severity Security Advisory: Critical Topic An update for java-180-oracle is now available for Oracle Java for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability ...
Synopsis Critical: java-170-oracle security update Type/Severity Security Advisory: Critical Topic An update for java-170-oracle is now available for Oracle Java for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability ...
Synopsis Important: java-170-openjdk security update Type/Severity Security Advisory: Important Topic An update for java-170-openjdk is now available for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring Sys ...
Synopsis Important: java-160-sun security update Type/Severity Security Advisory: Important Topic An update for java-160-sun is now available for Oracle Java for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Sco ...
Synopsis Moderate: java-180-ibm security update Type/Severity Security Advisory: Moderate Topic An update for java-180-ibm is now available for Red Hat Satellite 58Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base ...
Synopsis Critical: java-180-openjdk security update Type/Severity Security Advisory: Critical Topic An update for java-180-openjdk is now available for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring System ...
Synopsis Critical: java-180-oracle security update Type/Severity Security Advisory: Critical Topic An update for java-180-oracle is now available for Oracle Java for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability ...
Synopsis Critical: java-170-oracle security update Type/Severity Security Advisory: Critical Topic An update for java-170-oracle is now available for Oracle Java for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability ...
Synopsis Important: java-170-openjdk security update Type/Severity Security Advisory: Important Topic An update for java-170-openjdk is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring Sys ...
Synopsis Critical: java-180-ibm security update Type/Severity Security Advisory: Critical Topic An update for java-180-ibm is now available for Red Hat Enterprise Linux 6 SupplementaryRed Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring ...
Synopsis Critical: java-180-ibm security update Type/Severity Security Advisory: Critical Topic An update for java-180-ibm is now available for Red Hat Enterprise Linux 7 SupplementaryRed Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring ...
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking) Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181 Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Emb ...
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot) Supported versions that are affected are Java SE: 7u191, 8u182 and 11; Java SE Embedded: 8u181 Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded Suc ...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI) Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28319 Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromis ...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JSSE) Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28319 Difficult to exploit vulnerability allows unauthenticated attacker with network access via SSL/TLS to compromise Java SE, ...
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Security) Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181 Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embed ...

Github Repositories

《JNDI-深入理解Java万恶之源》

《JNDI-深入理解万恶之源》 本项目是用来记录自己在研究 JNDI 安全过程中收集到的优秀内容,包括优秀的工具代码技巧或详细深入分析的漏洞文章等资源。JNDI实乃万恶之源!JNDI - The Root of all Evil。作者:0e0w 本项目创建于2021年12月11日,最近的一次更新时间为2023年8月16日。 01-JNDI基础知

log4j2 remote code execution or IP leakage exploit (with examples)

log4j2-exploits 2021-12-1112-17-44mp4 This fundamental vulnerability was reported by CVE-2018-3149 and patched by this article (8u121 Release Notes) However, the logging library for java called log4j2 had JNDILookup, which allowed access to protocols such as LDAP, which allowed code injection in older java versions Patched versions of ja

log4j2-exploits This fundamental vulnerability was reported by CVE-2018-3149 and patched by this article (8u421 Release Notes) However, the logging library for java called log4j2 had JNDILookup, which allowed access to protocols such as LDAP, which allowed code injection in older java versions Patched versions of java can prevent code injection, but JNDILookup makes request t

jolokia | spring boot acuator配置不当的漏洞复现

spring boot actuator jolokia 漏洞复现报告 更多内容参见:flowerlakegithubio/2019/12/03/Spring-Boot-Actuator-Jolokia/ 0x01 漏洞测试环境 一个包含 Spring Boot Actuators 的漏洞应用,该测试环境包含4个库:spring-boot-starter-web、spring-boot-starter-actuator、spring-cloud-starter-netflix-eureka-client、jolokia-core。注意该测试

CVE-2021-44228

log4j2-prosecutor Motivation This fundamental vulnerability was reported by [CVE-2018-3149](nvdnistgov/vuln/detail/CVE-2018-3149) and patched by [this article (8u121 Release Notes)](wwworaclecom/java/technologies/javase/8u121-relnoteshtml) However, the logging library for java called log4j2 had (JNDILookup)[CVE-2021-44228](githubcom/apache/logging

LDAP Swiss Army Knife

LDAP Swiss Army Knife Multi-function LDAP server utility Quickly setup LDAP server for testing purposes, MitM proxies for intercepting plaintext or forwarding NTLM credentials or exploit various Java JNDI/LDAP Client vulnerabilities Author: Moritz Bechler (moritzbechler@syssde) Project Repository: githubcom/SySS-Research/ldap-swak Build Maven required mvn package

《JNDI-深入理解Java万恶之源》

《JNDI-深入理解万恶之源》 本项目是用来记录自己在研究 JNDI 安全过程中收集到的优秀内容,包括优秀的工具代码技巧或详细深入分析的漏洞文章等资源。JNDI实乃万恶之源!JNDI - The Root of all Evil。作者:0e0w 本项目创建于2021年12月11日,最近的一次更新时间为2023年8月16日。 01-JNDI基础知

CVE-2021-44228

log4j2-prosecutor Motivation This fundamental vulnerability was reported by [CVE-2018-3149](nvdnistgov/vuln/detail/CVE-2018-3149) and patched by [this article (8u121 Release Notes)](wwworaclecom/java/technologies/javase/8u121-relnoteshtml) However, the logging library for java called log4j2 had (JNDILookup)[CVE-2021-44228](githubcom/apache/logging

fastjosn反序列化漏洞RCE

使用方法: 编译Exploitjava文件 可根据需求修改其中的执行命令 javac Exploitjava 将编译后的Exploitclass放到公网vps(能够使用http去访问到) 将marshalsec-003-SNAPSHOT-alljar放到公网vps上,注意公网vps需配置好java环境 执行如下命令启用ldap服务: java -cp marshalsec

《JNDI-深入理解Java万恶之源》

《JNDI-深入理解万恶之源》 本项目是用来记录自己在研究 JNDI 安全过程中收集到的优秀内容,包括优秀的工具代码技巧或详细深入分析的漏洞文章等资源。JNDI实乃万恶之源!JNDI - The Root of all Evil。作者:0e0w 本项目创建于2021年12月11日,最近的一次更新时间为2023年8月16日。 01-JNDI基础知