CVE-2012-5081 is an unspecified vulnerability within the Java Runtime Environment (JRE) component of Oracle Java SE, affecting versions 7u7 and earlier, 6u35 and earlier, 5.0u36 and earlier, and 1.4.2_38 and earlier, specifically related to JSSE. This vulnerability has a CVSS score of 5.0, indicating a network-based attack with low complexity that can lead to partial availability impact, meaning denial of service. While there are no known active exploits or publicly available exploit code, a Metasploit auxiliary module exists for scanning Bleichenbacher Oracle in RSA PKCS #1 v1.5. Despite its high EPSS and FAUCET Risk Score, there is minimal community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.7.0CPE matchmatch criteria | cpe:2.3:a:oracle:jdk:*:update7:*:*:*:*:*:* | ||
1.7.0CPE matchmatch criteria | cpe:2.3:a:oracle:jdk:1.7.0:*:*:*:*:*:*:* | ||
1.7.0CPE matchmatch criteria | cpe:2.3:a:oracle:jdk:1.7.0:update1:*:*:*:*:*:* | ||
1.7.0CPE matchmatch criteria | cpe:2.3:a:oracle:jdk:1.7.0:update2:*:*:*:*:*:* | ||
1.7.0CPE matchmatch criteria | cpe:2.3:a:oracle:jdk:1.7.0:update3:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.