cbcvebase.
CVE-2016-5597
published 2016-10-25

CVE-2016-5597: Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality via vectors…

PriorityP433medium5.9CVSS 3.0
AVNACHPRNUINSUCHINAN
EPSS
3.94%
89.2th percentile
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality via vectors related to Networking.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianopenjdk-8< openjdk-8 8u111-b14-1 (sid)openjdk-8 8u111-b14-1 (sid)
jenkinsazure_cli_plugin
jenkinsbyteguard_build_actions_plugin
jenkinscurseforge_publisher_plugin
jenkinseggplant_runner_plugin
jenkinsextensible_choice_parameter_plugin
jenkinsjdepend_maven_plugin
jenkinsjdepend_plugin
jenkinsmcp_server_plugin
jenkinsnexus_task_runner_plugin
jenkinsopenshift_pipeline_plugin
jenkinspublish_to_bitbucket_plugin
jenkinssaml_plugin
jenkinsstart_windocks_containers_plugin
jenkinsthemis_plugin
oraclejdk
oraclejdk
oraclejdk
oraclejre
oraclejre
oraclejre

CVSS provenance

nvdv3.05.9MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
ghsa5.9MEDIUM
osv5.9MEDIUM
vendor_debian5.9MEDIUM
vendor_redhat5.9MEDIUM
vendor_ubuntu3.1LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.