VRT 391,192 CVEs tracked · 15,442 in RASP scope · data as of 20 hours ago
Reset
More filters (1)
Columns
Oracle product: Oracle Java SE / Java SE
Overview 5 matches, all in RASP scope, all protected · 0 KEV · 0 public PoC · 0 CISA SSVC · 0 EPSS ≥ 0.5 · 0 disputed
5matches, all in RASP scope, all protected 0KEV0.0% 0public PoC0.0% 0CISA SSVC0.0% 0EPSS ≥ 0.50.0% 0disputed0.0%
Critical 0 0.0% High 0 0.0% Medium 0 0.0% Low 5 100.0% None 0 0.0% Unknown 0 0.0%
Protected by RASP 0 0.0% Rule in development 0 0.0% Mitigation candidate 0 0.0% No exploit published 0 0.0% No fix identified 0 0.0% Mitigated by environment configuration 5 100.0% Queued for review 0 0.0% Not applicable 0 0.0% Out of RASP scope 0 0.0% Rejected 0 0.0%
blocked by ARMR today 5 100.0% not blocked 0 0.0% not established 0 0.0% unrecorded 0 0.0%
Exploited in the wild 0 0.0% Working exploit published 0 0.0% Proof of concept only 0 0.0% Forecast only 0 0.0% No public exploit 5 100.0%
split by peak 3 / quarter
Unknown: 0None: 0Low: 5Medium: 0High: 0Critical: 0 Rejected: 0Out of RASP scope: 0Not applicable: 0Queued for review: 0Mitigated by environment configuration: 5No fix identified: 0No exploit published: 0Mitigation candidate: 0Rule in development: 0Protected by RASP: 0 unrecorded: 0not established: 0not blocked: 0blocked by ARMR today: 5 No public exploit: 5Forecast only: 0Proof of concept only: 0Working exploit published: 0Exploited in the wild: 0 Q4 2013: 1 CVE Q1 2014: 0 CVEs Q2 2014: 0 CVEs Q3 2014: 0 CVEs Q4 2014: 0 CVEs Q1 2015: 3 CVEs Q2 2015: 0 CVEs Q3 2015: 0 CVEs Q4 2015: 0 CVEs Q1 2016: 0 CVEs Q2 2016: 0 CVEs Q3 2016: 0 CVEs Q4 2016: 0 CVEs Q1 2017: 1 CVE
Q1 14Q3 14Q1 15Q3 15Q1 16Q3 16Q1 17
5 matches CSV JSON
CVE Severity Published Status Exploitation Description
CVE-2016-8328 Low 2017-01-27 Mitigated by environment configuration No public exploit Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Java Mission Control). The supported version that is affected is Java SE: 8u112. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE accessible data. Note: Applies to Java Mission Control Installation. CVSS v3.0 Base Score 3.7 (Integrity impacts).
CVE-2015-0413 Low 2015-01-21 Mitigated by environment configuration No public exploit Unspecified vulnerability in Oracle Java SE 7u72 and 8u25 allows local users to affect integrity via unknown vectors related to Serviceability.
CVE-2014-6591 Low 2015-01-21 Mitigated by environment configuration No public exploit Unspecified vulnerability in the Java SE component in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to 2D, a different vulnerability than CVE-2014-6585.
CVE-2014-6585 Low 2015-01-21 Mitigated by environment configuration No public exploit Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to 2D, a different vulnerability than CVE-2014-6591.
CVE-2013-5772 Low 2013-10-16 Mitigated by environment configuration No public exploit Unspecified vulnerability in the Java SE component in Oracle Java SE Java SE 7u40 and earlier and Java SE 6u60 and earlier allows remote attackers to affect integrity via unknown vectors related to jhat.