CVE-2009-2672
OpenJDK Proxy mechanism information leaks (6801071)
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, does not prevent access to browser cookies by untrusted (1) applets and (2) Java Web Start applications, which allows remote attackers to hijack web sessions via unspecified vectors.
El mecanismo proxy implementado en Sun Java Runtime Environment (JRE) en JDK y JRE v6 anterior Update v15, y JDK y JRE v5.0 anterior Update v20, no previene el acceso a las cookies del buscador por (1) applets y (2) aplicaciones Java Web Start no confiables, que permiten a atacantes remotos secuestrar las sesiones web a través de vectores no especificados.
Potential security vulnerabilities have been identified in Java Runtime Environment (JRE) and Java Developer Kit (JDK) running on HP-UX. These vulnerabilities could allow remote unauthorized access, privilege escalation, and Denial of Service (DoS).
CVSS Scores
SSVC
- Decision:-
Timeline
- 2009-08-05 CVE Reserved
- 2009-08-05 CVE Published
- 2024-08-07 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (33)
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://sunsolve.sun.com/search/document.do?assetkey=1-21-125136-16-1 | 2018-10-10 | |
http://sunsolve.sun.com/search/document.do?assetkey=1-66-263409-1 | 2018-10-10 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | <= 6 Search vendor "Sun" for product "Jdk" and version " <= 6" | update_13 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_1 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_10 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_11 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_12 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_13 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_14 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_15 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_16 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_17 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_2 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_3 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_4 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_5 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_6 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_7 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_8 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 5.0 Search vendor "Sun" for product "Jdk" and version "5.0" | update_9 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_1 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_10 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_11 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_12 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_2 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_3 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_4 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_5 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_6 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_7 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_8 |
Affected
| ||||||
Sun Search vendor "Sun" | Jdk Search vendor "Sun" for product "Jdk" | 6 Search vendor "Sun" for product "Jdk" and version "6" | update_9 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | <= 6 Search vendor "Sun" for product "Jre" and version " <= 6" | update_13 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_1 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_10 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_11 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_12 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_13 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_14 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_15 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_16 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_17 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_19 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_2 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_3 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_4 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_5 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_6 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_7 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_8 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 5.0 Search vendor "Sun" for product "Jre" and version "5.0" | update_9 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_1 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_10 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_11 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_12 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_2 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_3 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_4 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_5 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_6 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_7 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_8 |
Affected
| ||||||
Sun Search vendor "Sun" | Jre Search vendor "Sun" for product "Jre" | 6 Search vendor "Sun" for product "Jre" and version "6" | update_9 |
Affected
|