漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Unspecified vulnerability in the JRE component in IBM Java 7 SR2 and earlier, Java 6.0.1 SR3 and earlier, Java 6 SR11 and earlier, Java 5 SR14 and earlier, and Java 142 SR13 FP13 and earlier; as used in IBM Rational Host On-Demand, Rational Change, Tivoli Monitoring, Smart Analytics System 5600, Tivoli Remote Control 5.1.2, WebSphere Real Time, Lotus Notes & Domino, Tivoli Storage Productivity Center, and Service Deliver Manager; and other products from other vendors such as Red Hat, allows remote attackers to execute arbitrary code via vectors related to "insecure use of the java.lang.ClassLoder defineClass() method."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Java 安全绕过漏洞
Vulnerability Description
IBM Java Runtime Environment(JRE)是美国IBM公司所开发的一个Java运行时环境,是运行Java程序所必须的环境的集合,包含JVM标准实现及Java核心类库。 IBM Java中存在漏洞,可被恶意攻击者利用绕过一定的安全限制,控制用户系统。该漏洞源于‘defineClass()’(java.lang.ClassLoder)方法中存在错误,可被攻击者利用绕过沙盒。成功的利用该漏洞可执行任意Java代码。以下版本中存在漏洞:Java 7 SR2和早期版本,Java 6.0.1
CVSS Information
N/A
Vulnerability Type
N/A