CVE-2014-2410
published 2014-04-16CVE-2014-2410: Unspecified vulnerability in Oracle Java SE 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to…
PriorityP348critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
4.37%
90.3th percentile
Unspecified vulnerability in Oracle Java SE 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | jdk | — | — |
| oracle | jre | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Oracle Java SE 8 JavaFX Remote Code Execution (Nessus ID 73570 / ID 122007)
vuldb·2026-05-11·CVSS 9.3
CVE-2014-2410 [CRITICAL] Oracle Java SE 8 JavaFX Remote Code Execution (Nessus ID 73570 / ID 122007)
A vulnerability was found in Oracle Java SE 8. It has been declared as very critical. This vulnerability affects unknown code of the component JavaFX. Executing a manipulation can lead to Remote Code Execution.
This vulnerability appears as CVE-2014-2410. The attack may be performed from remote. There is no available exploit.
It is recommended to upgrade the affected component.
GHSA
GHSA-mxpr-65h4-hgm5: Unspecified vulnerability in Oracle Java SE 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors relat
ghsa_unreviewed·2022-05-10
CVE-2014-2410 [HIGH] GHSA-mxpr-65h4-hgm5: Unspecified vulnerability in Oracle Java SE 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors relat
Unspecified vulnerability in Oracle Java SE 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX.
Red Hat
JDK: unspecified vulnerabilities fixed in 8u5 (JavaFX, Scripting)
vendor_redhat·2014-04-15·CVSS 9.3
CVE-2014-2410 [CRITICAL] JDK: unspecified vulnerabilities fixed in 8u5 (JavaFX, Scripting)
JDK: unspecified vulnerabilities fixed in 8u5 (JavaFX, Scripting)
Unspecified vulnerability in Oracle Java SE 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX.
Package: java-1.5.0-ibm (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.6.0-ibm (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.7.0-ibm (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.7.0-oracle (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.5.0-ibm (Red Hat Enterprise Linux 6) - Not affected
Package: java-1.6.0-ibm (Red Hat Enterprise Linux 6) - Not affected
Package: java-1.7.0-ibm (Red Hat Enterprise Linux 6) - Not affected
Package: java-1.7.0-oracle (Red Hat Enterprise Linux 6) - Not affected
Package: j
No detection rules found.
No public exploits indexed.
http://security.gentoo.org/glsa/glsa-201502-12.xmlhttp://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlhttp://www.securityfocus.com/bid/66886http://security.gentoo.org/glsa/glsa-201502-12.xmlhttp://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlhttp://www.securityfocus.com/bid/66886
2014-04-16
Published