CVE-2009-2676

Unspecified vulnerability in JNLPAppletlauncher in Sun Java SE, and SE for Business, in JDK and JRE 6 Update 14 and earlier and JDK and JRE 5.0 Update 19 and earlier; and Java SE for Business in SDK and JRE 1.4.2_21 and earlier; allows remote attackers to create or modify arbitrary files via vectors involving an untrusted Java applet that accesses an old version of JNLPAppletLauncher.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 93%
VendorProductVersion
sunjava_se
*
sunjava_se
*
sunjdk
𝑥
≤ 1.5.0
sunjdk
𝑥
≤ 1.6.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjre
𝑥
≤ 1.5.0
sunjre
𝑥
≤ 1.6.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjava_se
*
sunjre
𝑥
≤ 1.4.2_21
sunjre
1.4.0
sunjre
1.4.0_01:_01
sunjre
1.4.0_02:_02
sunjre
1.4.0_03:_03
sunjre
1.4.0_04:_04
sunjre
1.4.1
sunjre
1.4.1
sunjre
1.4.1
sunjre
1.4.1
sunjre
1.4.1
sunjre
1.4.1
sunjre
1.4.1
sunjre
1.4.1
sunjre
1.4.2
sunjre
1.4.2
sunjre
1.4.2
sunjre
1.4.2
sunjre
1.4.2
sunjre
1.4.2
sunjre
1.4.2_1:_1
sunjre
1.4.2_2:_2
sunjre
1.4.2_3:_3
sunjre
1.4.2_4:_4
sunjre
1.4.2_5:_5
sunjre
1.4.2_6:_6
sunjre
1.4.2_7:_7
sunjre
1.4.2_8:_8
sunjre
1.4.2_9:_9
sunjre
1.4.2_10:_10
sunjre
1.4.2_11:_11
sunjre
1.4.2_12:_12
sunjre
1.4.2_13:_13
sunjre
1.4.2_14:_14
sunjre
1.4.2_15:_15
sunsdk
𝑥
≤ 1.4.2_21
sunsdk
1.4.0
sunsdk
1.4.0_01:_01
sunsdk
1.4.0_02:_02
sunsdk
1.4.0_03:_03
sunsdk
1.4.0_04:_04
sunsdk
1.4.1
sunsdk
1.4.1_01:_01
sunsdk
1.4.1_02:_02
sunsdk
1.4.1_03:_03
sunsdk
1.4.1_04:_04
sunsdk
1.4.1_05:_05
sunsdk
1.4.1_06:_06
sunsdk
1.4.1_07:_07
sunsdk
1.4.2
sunsdk
1.4.2_1:_1
sunsdk
1.4.2_2:_2
sunsdk
1.4.2_3:_3
sunsdk
1.4.2_4:_4
sunsdk
1.4.2_5:_5
sunsdk
1.4.2_6:_6
sunsdk
1.4.2_7:_7
sunsdk
1.4.2_8:_8
sunsdk
1.4.2_9:_9
sunsdk
1.4.2_10:_10
sunsdk
1.4.2_11:_11
sunsdk
1.4.2_12:_12
sunsdk
1.4.2_13:_13
sunsdk
1.4.2_14:_14
sunsdk
1.4.2_15:_15
sunsdk
1.4.2_16:_16
sunsdk
1.4.2_17:_17
sunsdk
1.4.2_18:_18
sunsdk
1.4.2_19:_19
sunsdk
1.4.2_20:_20
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openjdk-6
maverick
not-affected
lucid
not-affected
karmic
not-affected
jaunty
Fixed 6b14-1.4.1-0ubuntu11
released
intrepid
Fixed 6b12-0ubuntu6.5
released
hardy
Fixed 6b18-1.8.2-4ubuntu1~8.04.1
released
dapper
dne
sun-java5
maverick
dne
lucid
dne
karmic
dne
jaunty
ignored
intrepid
ignored
hardy
not-affected
gutsy
ignored
dapper
ignored
sun-java6
maverick
not-affected
lucid
Fixed 6-15-1
released
karmic
Fixed 6-15-1
released
jaunty
Fixed 6.20dlj-0ubuntu1.9.04
released
intrepid
ignored
hardy
Fixed 6.20dlj-0ubuntu1.8.04
released
dapper
dne
References