CVE-2011-3555 describes an unspecified vulnerability within the Java Runtime Environment (JRE) component of Oracle Java SE JDK and JRE versions 6 and 7. This flaw allows remote, untrusted Java Web Start applications or applets to compromise the integrity and availability of affected systems. With a CVSS score of 6.1, it is a medium-severity vulnerability that can be exploited over a network with high attack complexity, potentially leading to partial integrity loss and complete availability loss. There is no known public exploit code, Metasploit modules, or Nuclei templates, and it has not been added to CISA's KEV catalog; community discussion and media coverage are also absent.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.7.0CPE matchmatch criteria | cpe:2.3:a:sun:jdk:1.7.0:*:*:*:*:*:*:* | ||
1.7.0CPE matchmatch criteria | cpe:2.3:a:sun:jre:1.7.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:H/Au:N/C:N/I:P/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.