Kaspersky ID:
KLA11753
Дата обнаружения:
16/03/2020
Обновлено:
06/04/2026

Описание

Multiple vulnerabilities were found in Oracle Java SE. Malicious users can exploit these vulnerabilities to cause denial of service, obtain sensitive information, bypass security restrictions.

Below is a complete list of vulnerabilities:

  1. A memory access vulnerability in XML can be exploited to cause denial of service.
  2. Vulnerability in Scripting component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.
  3. Vulnerability in Serialization component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.
  4. Vulnerability in Advanced Management Console component of Java SE can be exploited remotely to obtain sensitive information.
  5. Vulnerability in JSSE component of Java SE can be exploited remotely to obtain sensitive information, bypass security restrictions.
  6. Vulnerability in Security component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.
  7. Vulnerability in JSSE component of Java SE can be exploited remotely to obtain sensitive information.
  8. Vulnerability in JSSE component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.
  9. Vulnerability in Lightweight HTTP Server component of Java SE, Java SE Embedded can be exploited remotely to obtain sensitive information, bypass security restrictions.
  10. Vulnerability in Libraries component of Java SE, Java SE Embedded can be exploited remotely to obtain sensitive information, bypass security restrictions, cause denial of service.
  11. Vulnerability in JSSE component of Java SE can be exploited remotely to bypass security restrictions.
  12. Vulnerability in Concurrency component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.

Первичный источник обнаружения

Эксплуатация

Public exploits exist for this vulnerability.

Связанные продукты

Список CVE

  • CVE-2019-18197
    critical
  • CVE-2020-2754
    warning
  • CVE-2020-2755
    warning
  • CVE-2020-2756
    warning
  • CVE-2020-2757
    warning
  • CVE-2020-2764
    warning
  • CVE-2020-2767
    warning
  • CVE-2020-2773
    warning
  • CVE-2020-2778
    warning
  • CVE-2020-2781
    high
  • CVE-2020-2800
    warning
  • CVE-2020-2803
    critical
  • CVE-2020-2805
    critical
  • CVE-2020-2816
    critical
  • CVE-2020-2830
    high

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Do you want to save your changes?
Your message has been sent successfully.