CVE-2012-1533

Oracle Java SE <7.7 - Info Disclosure

Title source: llm

Description

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier, and 6 Update 35 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2012-3159.

Exploits (2)

exploitdb WORKING POC
by Rh0 · rubyremotemultiple
https://www.exploit-db.com/exploits/26123
metasploit WORKING POC EXCELLENT
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/java_ws_double_quote.rb

References (22)

... and 2 more

Scores

EPSS 0.6588
EPSS Percentile 98.5%

Details

Status published
Products (9)
oracle/jdk 1.7.0 (7 CPE variants)
oracle/jdk 1.6.0 update22 (12 CPE variants)
oracle/jdk < 1.6.0
oracle/jdk < 1.7.0
oracle/jre 1.7.0 (7 CPE variants)
oracle/jre 1.6.0 update22 (12 CPE variants)
oracle/jre < 1.6.0
oracle/jre < 1.7.0
sun/jdk 1.6.0 update_10 (8 CPE variants)
Published Oct 16, 2012
Tracked Since Feb 18, 2026