cbcvebase.
CVE-2008-3105
published 2008-07-09

CVE-2008-3105: Unspecified vulnerability in the JAX-WS client and service in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier allows remote attackers…

PriorityP336high8.3CVSS 2.0
AVNACMAuNCPIPAC
EPSS
4.04%
89.4th percentile
Unspecified vulnerability in the JAX-WS client and service in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier allows remote attackers to access URLs or cause a denial of service via unknown vectors involving "processing of XML data" by a trusted application.

Affected

10 ranges
VendorProductVersion rangeFixed in
sunjdk<= 5.0
sunjdk<= 6
sunjdk
sunjdk
sunjre<= 5.0
sunjre<= 6
sunjre
sunjre
vmwarevmware_esxi
vmwarevmware_workstation

CVSS provenance

nvdv2.08.3HIGHAV:N/AC:M/Au:N/C:P/I:P/A:C
vendor_redhat8.3HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.