cbcvebase.
CVE-2011-3521
published 2011-10-19

CVE-2011-3521: Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE, 7, 6 Update 27 and earlier, and 5.0 Update 31 and earlier…

PriorityP348critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
3.93%
89.2th percentile
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE, 7, 6 Update 27 and earlier, and 5.0 Update 31 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Deserialization.

Affected

10 ranges
VendorProductVersion rangeFixed in
sunjdk<= 1.6.0
sunjdk<= 1.5.0
sunjdk
sunjdk
sunjdk
sunjre<= 1.6.0
sunjre<= 1.5.0
sunjre
sunjre
sunjre

CVSS provenance

nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.