Oracle Java SE Rhino Script Engine Remote Code Execution Vulnerability
Publish Date: 21 luglio 2015
Gravità: : Critico
Identificatori CVE: CVE-2011-3544
Data notifica: 21 luglio 2015
Descrizione
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Scripting.
Informazioni esposizione:
Apply associated Trend Micro DPI Rules.
Soluzioni
Trend Micro Deep Security DPI Rule Number: 1004870
Trend Micro Deep Security DPI Rule Name: 1004870 - Identified Suspicious Jar File
Software e versione interessati:
- sun jdk 1.6.0
- sun jdk 1.7.0
- sun jre 1.6.0
- sun jre 1.7.0