Unspecified Hotspot Vulnerability in Oracle Java SE Products
CVE-2016-3606

9.6CRITICAL

Key Information:

Vendor
Oracle
Status
Vendor
CVE Published:
21 July 2016

Summary

An unspecified vulnerability found within Oracle Java SE 7u101 and 8u92, as well as Java SE Embedded 8u91, allows remote attackers to potentially compromise the confidentiality, integrity, and availability of affected systems through various vectors related to the Hotspot component. This vulnerability highlights the risks associated with running outdated Java versions and emphasizes the importance of keeping software updated to mitigate security threats.

References

EPSS Score

5% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
9.6
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.