CVE-2014-0448
published 2014-04-16CVE-2014-0448: Unspecified vulnerability in Oracle Java SE 7u51 and 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors…
PriorityP344high7.6CVSS 2.0
AVNACHAuNCCICAC
EPSS
5.08%
91.4th percentile
Unspecified vulnerability in Oracle Java SE 7u51 and 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | forms_viewer | >= 4.0.0 < 4.0.0.3 | 4.0.0.3 |
| ibm | forms_viewer | >= 8.0.0 < 8.0.1.1 | 8.0.1.1 |
| oracle | jdk | — | — |
| oracle | jdk | — | — |
| oracle | jre | — | — |
| oracle | jre | — | — |
CVSS provenance
nvdv2.07.6HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
vendor_redhat7.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Oracle Java SE 7u51/8 Deployment Remote Code Execution (Nessus ID 73570 / ID 185085)
vuldb·2026-05-10·CVSS 7.6
CVE-2014-0448 [HIGH] Oracle Java SE 7u51/8 Deployment Remote Code Execution (Nessus ID 73570 / ID 185085)
A vulnerability marked as critical has been reported in Oracle Java SE 7u51/8. This affects an unknown function of the component Deployment Handler. Performing a manipulation results in Remote Code Execution.
This vulnerability was named CVE-2014-0448. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
GHSA
GHSA-5q3p-fcjg-q955: Unspecified vulnerability in Oracle Java SE 7u51 and 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vect
ghsa_unreviewed·2022-05-10
CVE-2014-0448 [HIGH] GHSA-5q3p-fcjg-q955: Unspecified vulnerability in Oracle Java SE 7u51 and 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vect
Unspecified vulnerability in Oracle Java SE 7u51 and 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.
Red Hat
JDK: unspecified vulnerability fixed in 7u55 and 8u5 (Deployment)
vendor_redhat·2014-04-15·CVSS 7.6
CVE-2014-0448 [HIGH] JDK: unspecified vulnerability fixed in 7u55 and 8u5 (Deployment)
JDK: unspecified vulnerability fixed in 7u55 and 8u5 (Deployment)
Unspecified vulnerability in Oracle Java SE 7u51 and 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.
Package: java-1.5.0-ibm (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.6.0-ibm (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.5.0-ibm (Red Hat Enterprise Linux 6) - Not affected
Package: java-1.6.0-ibm (Red Hat Enterprise Linux 6) - Not affected
Package: java-1.7.0-oracle (Red Hat Enterprise Linux 7) - Not affected
No detection rules found.
No public exploits indexed.
http://marc.info/?l=bugtraq&m=140852886808946&w=2http://security.gentoo.org/glsa/glsa-201502-12.xmlhttp://www-01.ibm.com/support/docview.wss?uid=swg21672080http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlhttp://www.securityfocus.com/bid/66904https://access.redhat.com/errata/RHSA-2014:0413http://marc.info/?l=bugtraq&m=140852886808946&w=2http://security.gentoo.org/glsa/glsa-201502-12.xmlhttp://www-01.ibm.com/support/docview.wss?uid=swg21672080http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlhttp://www.securityfocus.com/bid/66904https://access.redhat.com/errata/RHSA-2014:0413
2014-04-16
Published