Vulnerability Details CVE-2008-3112
Directory traversal vulnerability in Sun Java Web Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows remote attackers to create arbitrary files via the writeManifest method in the CacheEntry class, aka CR 6703909.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.084
EPSS Ranking 91.9%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2008-3112
-
-
-
-
-
-
-
-
-
-
cpe:2.3:a:sun:jre:1.3.1_03
-
cpe:2.3:a:sun:jre:1.3.1_04
-
cpe:2.3:a:sun:jre:1.3.1_05
-
cpe:2.3:a:sun:jre:1.3.1_06
-
cpe:2.3:a:sun:jre:1.3.1_07
-
cpe:2.3:a:sun:jre:1.3.1_08
-
cpe:2.3:a:sun:jre:1.3.1_09
-
cpe:2.3:a:sun:jre:1.3.1_10
-
cpe:2.3:a:sun:jre:1.3.1_11
-
cpe:2.3:a:sun:jre:1.3.1_12
-
cpe:2.3:a:sun:jre:1.3.1_13
-
cpe:2.3:a:sun:jre:1.3.1_14
-
cpe:2.3:a:sun:jre:1.3.1_15
-
cpe:2.3:a:sun:jre:1.3.1_16
-
cpe:2.3:a:sun:jre:1.3.1_17
-
cpe:2.3:a:sun:jre:1.3.1_18
-
cpe:2.3:a:sun:jre:1.3.1_19
-
cpe:2.3:a:sun:jre:1.3.1_2
-
cpe:2.3:a:sun:jre:1.3.1_20
-
cpe:2.3:a:sun:jre:1.3.1_21
-
cpe:2.3:a:sun:jre:1.3.1_22
-
cpe:2.3:a:sun:jre:1.3.1_23
-
cpe:2.3:a:sun:jre:1.3.1_24
-
cpe:2.3:a:sun:jre:1.3.1_25
-
cpe:2.3:a:sun:jre:1.3.1_26
-
cpe:2.3:a:sun:jre:1.3.1_27
-
cpe:2.3:a:sun:jre:1.3.1_28
-
-
-
cpe:2.3:a:sun:jre:1.4.0_01
-
cpe:2.3:a:sun:jre:1.4.0_02
-
cpe:2.3:a:sun:jre:1.4.0_03
-
cpe:2.3:a:sun:jre:1.4.0_04
-
-
cpe:2.3:a:sun:jre:1.4.1_02
-
cpe:2.3:a:sun:jre:1.4.1_03
-
cpe:2.3:a:sun:jre:1.4.1_04
-
cpe:2.3:a:sun:jre:1.4.1_05
-
cpe:2.3:a:sun:jre:1.4.1_06
-
cpe:2.3:a:sun:jre:1.4.1_07
-
-
cpe:2.3:a:sun:jre:1.4.2_01
-
cpe:2.3:a:sun:jre:1.4.2_02
-
cpe:2.3:a:sun:jre:1.4.2_03
-
cpe:2.3:a:sun:jre:1.4.2_04
-
cpe:2.3:a:sun:jre:1.4.2_05
-
cpe:2.3:a:sun:jre:1.4.2_06
-
cpe:2.3:a:sun:jre:1.4.2_07
-
cpe:2.3:a:sun:jre:1.4.2_08
-
cpe:2.3:a:sun:jre:1.4.2_09
-
cpe:2.3:a:sun:jre:1.4.2_1
-
cpe:2.3:a:sun:jre:1.4.2_10
-
cpe:2.3:a:sun:jre:1.4.2_11
-
cpe:2.3:a:sun:jre:1.4.2_12
-
cpe:2.3:a:sun:jre:1.4.2_13
-
cpe:2.3:a:sun:jre:1.4.2_14
-
cpe:2.3:a:sun:jre:1.4.2_15
-
cpe:2.3:a:sun:jre:1.4.2_16
-
cpe:2.3:a:sun:jre:1.4.2_17
-
cpe:2.3:a:sun:jre:1.4.2_2
-
cpe:2.3:a:sun:jre:1.4.2_3
-
cpe:2.3:a:sun:jre:1.4.2_4
-
cpe:2.3:a:sun:jre:1.4.2_5
-
cpe:2.3:a:sun:jre:1.4.2_6
-
cpe:2.3:a:sun:jre:1.4.2_7
-
cpe:2.3:a:sun:jre:1.4.2_8
-
cpe:2.3:a:sun:jre:1.4.2_9
-
-
-
-
-
cpe:2.3:a:sun:sdk:1.4.2_01
-
cpe:2.3:a:sun:sdk:1.4.2_02
-
cpe:2.3:a:sun:sdk:1.4.2_03
-
cpe:2.3:a:sun:sdk:1.4.2_04
-
cpe:2.3:a:sun:sdk:1.4.2_05
-
cpe:2.3:a:sun:sdk:1.4.2_06
-
cpe:2.3:a:sun:sdk:1.4.2_07
-
cpe:2.3:a:sun:sdk:1.4.2_08
-
cpe:2.3:a:sun:sdk:1.4.2_09
-
cpe:2.3:a:sun:sdk:1.4.2_10
-
cpe:2.3:a:sun:sdk:1.4.2_11
-
cpe:2.3:a:sun:sdk:1.4.2_12
-
cpe:2.3:a:sun:sdk:1.4.2_13
-
cpe:2.3:a:sun:sdk:1.4.2_14
-
cpe:2.3:a:sun:sdk:1.4.2_15
-
cpe:2.3:a:sun:sdk:1.4.2_16
-
cpe:2.3:a:sun:sdk:1.4.2_17