Multiple unspecified vulnerabilities in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier allow untrusted applets and applications to gain privileges via vectors related to access to inner classes in the (1) JAX-WS and (2) JAXB packages.
2008-12-05T11:30:00.423
2025-04-09T00:30:58.490
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sun | jdk | ≤ 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jre | ≤ 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |