← back
CVE-2015-2590

CVE-2015-2590

CVSS 9.8 CRITICALEPSS 25.7%● KEV
In short

A critical flaw in Oracle Java allows remote attackers to compromise computer security through an unspecified vulnerability in the Java Libraries component. This can lead to unauthorized access, data tampering, or system disruption without requiring special user interaction.

Technical detail

An unspecified vulnerability in Oracle Java SE (versions 6u95, 7u80, 8u45) and Java SE Embedded (7u75, 8u33) within the Libraries component permits remote code execution or privilege escalation via unknown attack vectors. The vulnerability affects confidentiality, integrity, and availability of affected systems, with pre-requisite of running vulnerable Java versions.

Summary generated and translated by AI from the official description.
Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2015-4732.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →