CVE-2023-22043
CVSS 3.1 Score 5.9 of 10 (medium)
Details
Summary
CVE-2023-22043 is a vulnerability affecting Oracle Java SE, specifically version 8u371 of the JavaFX component. This issue allows unauthenticated attackers, with network access, to potentially compromise Oracle Java SE. Successful exploitation could result in unauthorized access to critical data or all data accessible through the software. This vulnerability primarily impacts clients running untrusted code, such as sandboxed Java Web Start applications or applets, relying on the Java sandbox for security. The Base Score, according to CVSS 3.1, is 5.9 (Integrity) and the Vector is (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N).
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Java Runtime Environment
- Oracle Java Development Kit
Affected Vendors
- BonqDAO