CVE-2008-5360
Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 and earlier creates temporary files with predictable file names, which allows attackers to write malicious JAR files via unknown vectors.
- Affected products
- Hp-Ux, Jdk, Java Platform, Java Runtime Environment, Sdk
- Sun Jdk
- = 1.5.0, 1.6.0
- Fix
- Available
- CVSS 2.0
- 6.4 MEDIUM
- EPSS
- 3.5% (88th percentile)
- NVD status
- Modified
- Published
- 2008-12-05
CVE-2008-5360 at NVD
1 known exploit for CVE-2008-5360
Proof-of-concept code and exploit modules indexed by Sploitus