Skip to main content

Vendor/product archive

ibm / java CVEs

Beta · best-effort

27 CVEs tagged to ibm / java16 Critical, 4 High, 6 Medium, 1 Low, 0 Unrated.

CVE-2019-4473

Published Aug 5, 2019

Multiple binaries in IBM SDK, Java Technology Edition 7, 7R, and 8 on the AIX platform use insecure absolute RPATHs, which may facilitate code injection and privilege elevation by…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-1916

Published Jul 2, 2015

Unspecified vulnerability in IBM Java 8 before SR1 allows remote attackers to cause a denial of service via unknown vectors related to SSL/TLS and the Secure Socket Extension prov…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-1914

Published Jul 2, 2015

IBM Java 7 R1 before SR3, 7 before SR9, 6 R1 before SR8 FP4, 6 before SR16 FP4, and 5.0 before SR16 FP10 allows remote attackers to bypass "permission checks" and obtain sensitive…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0192

Published Jul 2, 2015

Unspecified vulnerability in IBM Java 8 before SR1, 7 R1 before SR2 FP11, 7 before SR9, 6 R1 before SR8 FP4, 6 before SR16 FP4, and 5.0 before SR16 FP10 allows remote attackers to…

CVSS 9.8 · Critical

CVE-2014-3068

Published Dec 2, 2014

IBM Java Runtime Environment (JRE) 7 R1 before SR1 FP1 (7.1.1.1), 7 before SR7 FP1 (7.0.7.1), 6 R1 before SR8 FP1 (6.1.8.1), 6 before SR16 FP1 (6.0.16.1), and before 5.0 SR16 FP7…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3065

Published Dec 2, 2014

Unspecified vulnerability in IBM Java Runtime Environment (JRE) 7 R1 before SR2 (7.1.2.0), 7 before SR8 (7.0.8.0), 6 R1 before SR8 FP2 (6.1.8.2), 6 before SR16 FP2 (6.0.16.2), and…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0485

Published Jan 21, 2014

Unspecified vulnerability in IBM Java SDK 7 before SR4-FP1, 6 before SR13-FP1, 5.0 before SR16-FP1, and 1.4.2 before SR13-FP16 has unknown impact and attack vectors related to Cla…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-5458

Published Nov 24, 2013

Unspecified vulnerability in IBM Java SDK 7.0.0 before SR6 allows remote attackers to execute arbitrary code via unspecified vectors.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-5457

Published Nov 24, 2013

Unspecified vulnerability in IBM Java SDK 7.0.0 before SR6, 6.0.1 before SR7, and 6.0.0 before SR15 allows remote attackers to execute arbitrary code via unspecified vectors.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-5456

Published Nov 24, 2013

The com.ibm.rmi.io.SunSerializableFactory class in IBM Java SDK 7.0.0 before SR6 allows remote attackers to bypass a sandbox protection mechanism and execute arbitrary code via ve…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2013-5375

Published Nov 24, 2013

Unspecified vulnerability in IBM Java SDK 7.0.0 before SR6, 6.0.1 before SR7, 6.0.0 before SR15, and 5.0.0 before SR16 FP4 allows remote attackers to access restricted classes via…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4041

Published Nov 24, 2013

Unspecified vulnerability in IBM Java SDK 5.0.0 before SR16 FP4, 7.0.0 before SR6, 6.0.1 before SR7, and 6.0.0 before SR15 allows remote attackers to access restricted classes via…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-3012

Published Jul 23, 2013

Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 1.4.2 before 1.4.2 SR13-FP18, 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 b…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-3011

Published Jul 23, 2013

Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 1.4.2 before 1.4.2 SR13-FP18, 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 b…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-3010

Published Jul 23, 2013

Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 6.0.1 before 6.0.1 SR6 and 7 before 7 SR5 allows remote attackers to affect confidentiality, availabili…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-3009

Published Jul 23, 2013

The com.ibm.CORBA.iiop.ClientDelegate class in IBM Java 1.4.2 before 1.4.2 SR13-FP18, 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 before 7 SR5 improper…

CVSS 9.3 · Critical
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2013-3008

Published Jul 23, 2013

Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 7 before 7 SR5 allows remote attackers to affect confidentiality, availability, and integrity via unkno…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-3007

Published Jul 23, 2013

Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 6.0.1 before 6.0.1 SR6 and 7 before 7 SR5 allows remote attackers to affect confidentiality, availabili…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-3006

Published Jul 23, 2013

Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 7 before 7 SR5 allows remote attackers to affect confidentiality, availability, and integrity via unkno…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 27 CVEsPage 1 of 2