CVE-2016-8328
Description
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Java Mission Control). The supported version that is affected is Java SE: 8u112. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE accessible data. Note: Applies to Java Mission Control Installation. CVSS v3.0 Base Score 3.7 (Integrity impacts).
Risk Information
Base Score
3.7
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
0.558
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Multiple vulnerabilities affected in Java jdk (x64) 8(x64) | Windows |
| Multiple vulnerabilities affected in Java jdk 8 | Windows |
| Multiple vulnerabilities affected in Java jre (x64) 8(x64) | Windows |
| Multiple vulnerabilities affected in Java jre 8 | Windows |
| Multiple vulnerabilities are affected in Java SE Development Kit 8.0.1120 | Windows |
| Multiple vulnerabilities are affected in Java SE Development Kit (x64) 8.0.1120 | Windows |
| Multiple vulnerabilities are affected in Java Runtime Environment 1.8 8.0.1120 | Windows |
| Multiple vulnerabilities are affected in Java Runtime Environment 1.8 (x64) 8.0.1120 | Windows |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-342255 | Java Runtime Environment 1.8 (x64) (8.0.4310.10) (Manual Upload Required) |
| PATCH-342254 | Java Runtime Environment 1.8 (8.0.4310.10) (Manual Upload Required) |
| PATCH-349783 | Java SE Development Kit (8.0.4610.11) (Manual Upload Required) |
| PATCH-349784 | Java SE Development Kit (x64) (8.0.4610.11) (Manual Upload Required) |
| PATCH-349781 | Java Runtime Environment 1.8 (8.0.4610.11) (Manual Upload Required) |
| PATCH-349782 | Java Runtime Environment 1.8 (x64) (8.0.4610.11) (Manual Upload Required) |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234