Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2009-2689

JDK13Services.getProviders in Sun Java SE 5.0 before Update 20 and 6 before Update 15, and OpenJDK, grants full privileges to instances of unspecified object types, which allows context-dependent attackers to bypass intended access restrictions via an untrusted (1) applet or (2) application.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.079
EPSS Ranking 91.5%
CVSS Severity
CVSS v2 Score 10.0
References
Products affected by CVE-2009-2689
  • Sun » Java Se » Version: Any
    cpe:2.3:a:sun:java_se:*
  • Sun » Openjdk » Version: Any
    cpe:2.3:a:sun:openjdk:*


Contact Us

Shodan ® - All rights reserved