Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-1188

Multiple buffer overflows in the useEncodingDecl function in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, and 5.0 Update 14 and earlier, allow remote attackers to execute arbitrary code via a JNLP file with (1) a long key name in the xml header or (2) a long charset value, different issues than CVE-2008-1189, aka "The first two issues."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.345
EPSS Ranking 96.9%
CVSS Severity
CVSS v2 Score 9.3
References
Products affected by CVE-2008-1188
  • Sun » Jdk » Version: 1.5.0
    cpe:2.3:a:sun:jdk:1.5.0
  • Sun » Jdk » Version: 1.6.0
    cpe:2.3:a:sun:jdk:1.6.0
  • Sun » Jre » Version: 1.5.0
    cpe:2.3:a:sun:jre:1.5.0
  • Sun » Jre » Version: 1.6.0
    cpe:2.3:a:sun:jre:1.6.0


Contact Us

Shodan ® - All rights reserved