Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2008-3104


Multiple unspecified vulnerabilities in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, SDK and JRE 1.4.x before 1.4.2_18, and SDK and JRE 1.3.x before 1.3.1_23 allow remote attackers to violate the security model for an applet's outbound connections by connecting to localhost services running on the machine that loaded the applet.


Published

2008-07-09T23:41:00.000

Last Modified

2025-04-09T00:30:58.490

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 6.8 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

8.6

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-264
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application sun jdk ≤ 5.0 Yes
Application sun jdk ≤ 6 Yes
Application sun jdk 1.5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 5.0 Yes
Application sun jdk 6 Yes
Application sun jdk 6 Yes
Application sun jdk 6 Yes
Application sun jdk 6 Yes
Application sun jdk 6 Yes
Application sun jre 1.3.0 Yes
Application sun jre 1.3.1 Yes
Application sun jre 1.3.1 Yes
Application sun jre 1.3.1 Yes
Application sun jre 1.3.1 Yes
Application sun jre 1.3.1 Yes
Application sun jre 1.3.1_02 Yes
Application sun jre 1.3.1_03 Yes
Application sun jre 1.3.1_04 Yes
Application sun jre 1.3.1_05 Yes
Application sun jre 1.3.1_06 Yes
Application sun jre 1.3.1_07 Yes
Application sun jre 1.3.1_08 Yes
Application sun jre 1.3.1_09 Yes
Application sun jre 1.3.1_10 Yes
Application sun jre 1.3.1_11 Yes
Application sun jre 1.3.1_12 Yes
Application sun jre 1.3.1_13 Yes
Application sun jre 1.3.1_14 Yes
Application sun jre 1.3.1_15 Yes
Application sun jre 1.3.1_17 Yes
Application sun jre 1.3.1_21 Yes
Application sun jre 1.3.1_22 Yes
Application sun jre 1.4.2_1 Yes
Application sun jre 1.4.2_2 Yes
Application sun jre 1.4.2_3 Yes
Application sun jre 1.4.2_4 Yes
Application sun jre 1.4.2_5 Yes
Application sun jre 1.4.2_6 Yes
Application sun jre 1.4.2_7 Yes
Application sun jre 1.4.2_8 Yes
Application sun jre 1.4.2_9 Yes
Application sun jre 1.4.2_10 Yes
Application sun jre 1.4.2_11 Yes
Application sun jre 1.4.2_12 Yes
Application sun jre 1.4.2_13 Yes
Application sun jre 1.4.2_14 Yes
Application sun jre 1.4.2_15 Yes
Application sun jre 1.4.2_16 Yes
Application sun jre 1.4.2_17 Yes
Application sun sdk 1.3.0 Yes
Application sun sdk 1.3.1_01 Yes
Application sun sdk 1.3.1_02 Yes
Application sun sdk 1.3.1_03 Yes
Application sun sdk 1.3.1_04 Yes
Application sun sdk 1.3.1_05 Yes
Application sun sdk 1.3.1_06 Yes
Application sun sdk 1.3.1_07 Yes
Application sun sdk 1.3.1_08 Yes
Application sun sdk 1.3.1_09 Yes
Application sun sdk 1.3.1_10 Yes
Application sun sdk 1.3.1_11 Yes
Application sun sdk 1.3.1_12 Yes
Application sun sdk 1.3.1_13 Yes
Application sun sdk 1.3.1_14 Yes
Application sun sdk 1.3.1_15 Yes
Application sun sdk 1.3.1_16 Yes
Application sun sdk 1.3.1_17 Yes
Application sun sdk 1.3.1_18 Yes
Application sun sdk 1.3.1_19 Yes
Application sun sdk 1.3.1_20 Yes
Application sun sdk 1.3.1_21 Yes
Application sun sdk 1.3.1_22 Yes
Application sun sdk 1.4.2 Yes
Application sun sdk 1.4.2_01 Yes
Application sun sdk 1.4.2_02 Yes
Application sun sdk 1.4.2_03 Yes
Application sun sdk 1.4.2_04 Yes
Application sun sdk 1.4.2_05 Yes
Application sun sdk 1.4.2_06 Yes
Application sun sdk 1.4.2_07 Yes
Application sun sdk 1.4.2_08 Yes
Application sun sdk 1.4.2_09 Yes
Application sun sdk 1.4.2_10 Yes
Application sun sdk 1.4.2_11 Yes
Application sun sdk 1.4.2_12 Yes
Application sun sdk 1.4.2_13 Yes
Application sun sdk 1.4.2_14 Yes
Application sun sdk 1.4.2_15 Yes
Application sun sdk 1.4.2_16 Yes

References