Vulnerabilities > Oracle > JRE > 1.4.2.38

DATE CVE VULNERABILITY TITLE RISK
2017-12-29 CVE-2013-4578 Injection vulnerability in Oracle JDK and JRE
jarsigner in OpenJDK and Oracle Java SE before 7u51 allows remote attackers to bypass a code-signing protection mechanism and inject unsigned bytecode into a signed JAR file by leveraging improper file validation.
network
low complexity
oracle CWE-74
5.3
2011-10-19 CVE-2011-3544 Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Scripting.
network
low complexity
oracle canonical redhat suse
critical
9.8