Language:
https://download.oracle.com/sunalerts/1019736.1.html
https://download.oracle.com/sunalerts/1019737.1.html
https://download.oracle.com/sunalerts/1019738.1.html
https://download.oracle.com/sunalerts/1019739.1.html
https://download.oracle.com/sunalerts/1019740.1.html
https://download.oracle.com/sunalerts/1019741.1.html
https://download.oracle.com/sunalerts/1019742.1.html
https://download.oracle.com/sunalerts/1019759.1.html
https://download.oracle.com/sunalerts/1019793.1.html
https://download.oracle.com/sunalerts/1019794.1.html
https://download.oracle.com/sunalerts/1019797.1.html
https://download.oracle.com/sunalerts/1019798.1.html
https://download.oracle.com/sunalerts/1019799.1.html
https://download.oracle.com/sunalerts/1019800.1.html
https://www.oracle.com/technetwork/java/javase/6u11-139394.html
https://www.oracle.com/technetwork/java/javase/releasenotes-142123.html
https://www.oracle.com/technetwork/java/javase/releasenotes-138306.html
Severity: High
ID: 35030
File Name: sun_java_jre_244986.nasl
Version: 1.34
Type: local
Agent: windows
Family: Windows
Published: 12/4/2008
Updated: 4/11/2022
Configuration: Enable thorough checks
Supported Sensors: Nessus Agent, Nessus
Risk Factor: Critical
Score: 9.7
Risk Factor: High
Base Score: 9.3
Temporal Score: 8.1
Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
Risk Factor: High
Base Score: 8.8
Temporal Score: 8.4
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C
CPE: cpe:/a:oracle:jre
Required KB Items: SMB/Java/JRE/Installed
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 12/3/2008
CANVAS (CANVAS)
Core Impact
Metasploit (Sun Java Calendar Deserialization Privilege Escalation)
Elliot (Apache Tomcat File Disclosure)
CVE: CVE-2008-2086, CVE-2008-5339, CVE-2008-5340, CVE-2008-5341, CVE-2008-5342, CVE-2008-5343, CVE-2008-5344, CVE-2008-5345, CVE-2008-5346, CVE-2008-5347, CVE-2008-5348, CVE-2008-5349, CVE-2008-5350, CVE-2008-5351, CVE-2008-5352, CVE-2008-5353, CVE-2008-5354, CVE-2008-5355, CVE-2008-5356, CVE-2008-5357, CVE-2008-5358, CVE-2008-5359, CVE-2008-5360