cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-21093,https://securityvulnerability.io/vulnerability/CVE-2024-21093,Java VM Vulnerability Affects Oracle Database Server,"A vulnerability exists in the Java VM component of Oracle Database Server that could allow a low-privileged attacker with limited privileges, such as Create Session and Create Procedure, to exploit flaws with network access through Oracle Net. If successfully exploited, this vulnerability may lead to unauthorized access to confidential data or provide complete access to all information accessible via the Java VM. Users of affected versions should ensure their systems are updated to mitigate potential security risks.",Oracle,Java Virtual Machine,5.3,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-04-16T22:15:00.000Z,0 CVE-2007-5375,https://securityvulnerability.io/vulnerability/CVE-2007-5375,,"Interpretation conflict in the Sun Java Virtual Machine (JVM) allows user-assisted remote attackers to conduct a multi-pin DNS rebinding attack and execute arbitrary JavaScript in an intranet context, when an intranet web server has an HTML document that references a ""mayscript=true"" Java applet through a local relative URI, which may be associated with different IP addresses by the browser and the JVM.",Oracle,Java Virtual Machine,,,0.0014600000577047467,false,false,false,false,,false,false,2007-10-11T10:00:00.000Z,0 CVE-2002-0076,https://securityvulnerability.io/vulnerability/CVE-2002-0076,,"Java Runtime Environment (JRE) Bytecode Verifier allows remote attackers to escape the Java sandbox and execute commands via an applet containing an illegal cast operation, as seen in (1) Microsoft VM build 3802 and earlier as used in Internet Explorer 4.x and 5.x, (2) Netscape 6.2.1 and earlier, and possibly other implementations that use vulnerable versions of SDK or JDK, aka a variant of the ""Virtual Machine Verifier"" vulnerability.",Oracle,"Jre,Java Jre-jdk,Sdk,Virtual Machine,Jdk",,,0.006920000072568655,false,false,false,false,,false,false,2002-03-19T05:00:00.000Z,0 CVE-2002-0058,https://securityvulnerability.io/vulnerability/CVE-2002-0058,,"Vulnerability in Java Runtime Environment (JRE) allows remote malicious web sites to hijack or sniff a web client's sessions, when an HTTP proxy is being used, via a Java applet that redirects the session to another server, as seen in (1) Netscape 6.0 through 6.1 and 4.79 and earlier, (2) Microsoft VM build 3802 and earlier as used in Internet Explorer 4.x and 5.x, and possibly other implementations that use vulnerable versions of SDK or JDK.",Oracle,"Sdk,Jre,Virtual Machine,Jdk",,,0.005919999908655882,false,false,false,false,,false,false,2002-03-15T05:00:00.000Z,0