← Back

CVE-2008-2086

nvd nist
Published: Dec 5, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Sun Java Web Start and Java Plug-in for JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allow remote attackers to execute arbitrary code via a crafted jnlp file that modifies the (1) java.home, (2) java.ext.dirs, or (3) user.home System Properties, aka "Java Web Start File Inclusion" and CR 6694892.

Affected (91)

Products: Sun: Jdk, Jre, Sdk
3 products
Jdk
Jre
Sdk
Configuration A
91 vulnerable
Vulnerable SoftwareAffected Versions
Sun
Up to 6
Up to 5.0
Version 5.0 update_10
Version 5.0 update_11
Version 5.0 update_12
Version 5.0 update_13
Version 5.0 update_14
Version 5.0 update_15
Version 5.0 update_1
Version 5.0 update_2
Version 5.0 update_3
Version 5.0 update_4
Version 5.0 update_5
Version 5.0 update_6
Version 5.0 update_7
Version 5.0 update_8
Version 5.0 update_9
Version 6
Version 6 update_1
Version 6 update_2
Version 6 update_3
Version 6 update_4
Version 6 update_5
Version 6 update_6
Version 6 update_7
Version 6 update_8
Version 6 update_9
Sun
Up to 1.4.2_18
Up to 6
Up to 5.0
Version 1.4.2_10
Version 1.4.2_11
Version 1.4.2_12
Version 1.4.2_13
Version 1.4.2_14
Version 1.4.2_15
Version 1.4.2_16
Version 1.4.2_17
Version 1.4.2_1
Version 1.4.2_2
Version 1.4.2_3
Version 1.4.2_4
Version 1.4.2_5
Version 1.4.2_6
Version 1.4.2_7
Version 1.4.2_8
Version 1.4.2_9
Version 5.0
Version 5.0 update_10
Version 5.0 update_11
Version 5.0 update_12
Version 5.0 update_13
Version 5.0 update_14
Version 5.0 update_15
Version 5.0 update_1
Version 5.0 update_2
Version 5.0 update_3
Version 5.0 update_4
Version 5.0 update_5
Version 5.0 update_6
Version 5.0 update_7
Version 5.0 update_8
Version 5.0 update_9
Version 6
Version 6 update_1
Version 6 update_2
Version 6 update_3
Version 6 update_4
Version 6 update_5
Version 6 update_6
Version 6 update_7
Version 6 update_8
Version 6 update_9
Sun
Up to 1.4.2_18
Version 1.4.2_10
Version 1.4.2_11
Version 1.4.2_12
Version 1.4.2_13
Version 1.4.2_14
Version 1.4.2_15
Version 1.4.2_16
Version 1.4.2_17
Version 1.4.2_1
Version 1.4.2_2
Version 1.4.2_3
Version 1.4.2_4
Version 1.4.2_5
Version 1.4.2_6
Version 1.4.2_7
Version 1.4.2_8
Version 1.4.2_9

References (74)

Source: cve@mitre.org
Source: cve@mitre.org
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.