Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11, and OpenJDK 7, allows user-assisted remote attackers to bypass the Java security sandbox via unspecified vectors related to JMX, aka "Issue 52," a different vulnerability than CVE-2013-1490.
CVSS Details
- CVSS 3.1 Base Score: 5.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade java-1.7.0-openjdkUpgrade java-1.7.0-openjdk-demoUpgrade java-1.7.0-openjdk-srcUpgrade java-1.7.0-openjdk-javadocUpgrade java-1.7.0-openjdk-devel | Dec 1, 2016 | Jan 31, 2013 |
| Gentoo Linux | — | Upgrade dev-java/icedtea-bin. | Oct 30, 2017 | Jan 31, 2013 |
| Hpux | — | Update Jdk70.JDK70-COM to the latest versionUpdate Jdk70.JDK70-IPF32 to the latest versionUpdate Jre70.JRE70-IPF32-HS to the latest versionUpdate Jdk70.JDK70-DEMO to the latest versionUpdate Jre70.JRE70-IPF64 to the latest versionUpdate Jre70.JRE70-COM to the latest versionUpdate Jre70.JRE70-IPF64-HS to the latest versionUpdate Jre70.JRE70-IPF32 to the latest versionUpdate Jdk70.JDK70-IPF64 to the latest version | Aug 11, 2017 | Jan 31, 2013 |
| Jre Vuln | — | Upgrade to the latest version of Oracle Java | Feb 3, 2013 | Jan 31, 2013 |
| Oracle_linux | — | Upgrade java-1.7.0-openjdk-demoUpgrade java-1.7.0-openjdkUpgrade java-1.7.0-openjdk-develUpgrade java-1.7.0-openjdk-srcUpgrade java-1.7.0-openjdk-javadoc | Oct 16, 2024 | Jan 31, 2013 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jan 27, 2013 |
| Suse | — | Upgrade java-1_7_0-openjdk-demoUpgrade java-1_7_0-openjdk-javadocUpgrade java-1_7_0-openjdk-srcUpgrade java-1_7_0-openjdkUpgrade java-1_7_0-openjdk-devel | Feb 17, 2015 | Jan 31, 2013 |
| Ubuntu | — | Upgrade openjdk-7 | Nov 19, 2024 | Jan 31, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub