HackerFeeds
All CVEs

CVE-2013-0431

MEDIUM5.3
CISA KEV

Published 2013-01-31 · Updated 2026-08-14 · Source secalert_us@oracle.com

Description

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11, and OpenJDK 7, allows user-assisted remote attackers to bypass the Java security sandbox via unspecified vectors related to JMX, aka "Issue 52," a different vulnerability than CVE-2013-1490.

CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CWE-693

CISA Known-Exploited Vulnerability

Product: OracleJava Runtime Environment (JRE)

Name: Oracle JRE Sandbox Bypass Vulnerability

Date added: 2022-05-25 · Due: 2022-06-15

USED IN RANSOMWARE

Required action: Apply updates per vendor instructions.

View on NVD