Unspecified vulnerability in the JRE component in IBM Java 7 SR2 and earlier, Java 6.0.1 SR3 and earlier, Java 6 SR11 and earlier, Java 5 SR14 and earlier, and Java 142 SR13 FP13 and earlier; as used in IBM Rational Host On-Demand, Rational Change, Tivoli Monitoring, Smart Analytics System 5600, Tivoli Remote Control 5.1.2, WebSphere Real Time, Lotus Notes & Domino, Tivoli Storage Productivity Center, and Service Deliver Manager; and other products from other vendors such as Red Hat, when running under a security manager, allows remote attackers to gain privileges by modifying or removing the security manager via vectors related to "insecure use of the java.lang.reflect.Method invoke() method."
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-01-10 16:55
Updated : 2019-07-18 05:26
NVD link : CVE-2012-4820
Mitre link : CVE-2012-4820
JSON object : View
CWE
Products Affected
ibm
- lotus_notes
- lotus_notes_sametime
- rational_host_on-demand
- smart_analytics_system_5600
- service_delivery_manager
- lotus_notes_traveler
- websphere_real_time
- rational_change
- lotus_domino
- smart_analytics_system_5600_software
- java
- tivoli_remote_control
- tivoli_monitoring
tivoli_storage_productivity_center
- 5.0
- 5.1
- 5.1.1