Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2010-4452JDK vulnerability

7 documents7 sources
Severity
10.0CRITICALNVD
EPSS
84.9%
top 0.65%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedFeb 17
Latest updateMay 17

Description

Unspecified vulnerability in the Deployment component in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages2 packages

NVDsun/jdk1.6.0+1
NVDsun/jre1.6.0+1

Patches

🔴Vulnerability Details

3
GHSA
GHSA-mq39-jwgr-3jxw: Unspecified vulnerability in the Deployment component in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlie2022-05-17
CVEList
CVE-2010-4452: Unspecified vulnerability in the Deployment component in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlie2011-02-17
VulnCheck
Java Runtime Environment (JRE) Deployment Component Unspecified Vulnerability2010

💥Exploits & PoCs

1
Exploit-DB
Sun Java Applet2ClassLoader - Remote Code Execution (Metasploit)2011-03-16

📋Vendor Advisories

1
Red Hat
JDK unspecified vulnerability in Deployment component2011-02-15

💬Community

1
Bugzilla
CVE-2010-4452 JDK unspecified vulnerability in Deployment component2011-02-16
CVE-2010-4452 — SUN JDK vulnerability | cvebase