语言:
http://www.nessus.org/u?d3a7b9d6
http://www.nessus.org/u?4e90a121
严重性: Critical
ID: 83567
文件名: suse_SU-2012-1489-2.nasl
版本: 2.5
类型: local
代理: unix
发布时间: 2015/5/20
最近更新时间: 2022/3/29
支持的传感器: Agentless Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent
风险因素: Critical
分数: 9.8
风险因素: Critical
基本分数: 10
时间分数: 7.8
矢量: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
时间矢量: CVSS2#E:POC/RL:OF/RC:C
CPE: p-cpe:/a:novell:suse_linux:java-1_7_0-ibm, p-cpe:/a:novell:suse_linux:java-1_7_0-ibm-alsa, p-cpe:/a:novell:suse_linux:java-1_7_0-ibm-jdbc, p-cpe:/a:novell:suse_linux:java-1_7_0-ibm-plugin, cpe:/o:novell:suse_linux:11
必需的 KB 项: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list
可利用: true
易利用性: Exploits are available
补丁发布日期: 2012/11/21
CISA 已知利用日期: 2022/4/18
CANVAS (CANVAS)
Core Impact
Metasploit (Java Applet Method Handle Remote Code Execution)
CVE: CVE-2012-1531, CVE-2012-1532, CVE-2012-1533, CVE-2012-3159, CVE-2012-3216, CVE-2012-5067, CVE-2012-5070, CVE-2012-5071, CVE-2012-5073, CVE-2012-5075, CVE-2012-5076, CVE-2012-5077, CVE-2012-5079, CVE-2012-5081, CVE-2012-5083, CVE-2012-5084, CVE-2012-5087, CVE-2012-5088, CVE-2012-5089
BID: 56059, 56061, 56063, 56065, 56070, 56071, 56072, 56075, 56079, 56080, 56081, 56082, 56025, 56033, 56039, 56043, 56046, 56051, 56054, 56055, 56056, 56057, 56058, 56083