CVE-2012-1723Critical· 9.8▾ Hadal⚠ Exploited in the wildPoC availableUnspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.2_37 and earlier allows remote attackers to affect confidential…
▾ Hadal zone — Critical and actively exploited (CISA KEV / 0day)
impact 53.9 · likelihood 18.7 · exploitation 25 · ransomware 5
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 3 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Aug 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due Mar 24, 2022
Last analysed / modified upstream
94%
Exploit-DB · 1 GitHub repo · Metasploit ×1 (last check)
Added to the CISA catalog on Mar 3, 2022. Federal remediation due Mar 24, 2022. View catalog ↗
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.2_37 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
jdk <= 1.4.2_37jdk = 1.5.0jdk = 1.6.0jdk = 1.7.0jre <= 1.4.2_37jre = 1.5.0jre = 1.6.0jre = 1.7.0icedtea6 < 1.10.8icedtea6 >= 1.11.0, < 1.11.3enterprise_linux_desktop = 5.0enterprise_linux_desktop = 6.0enterprise_linux_eus = 6.2enterprise_linux_server = 5.0enterprise_linux_server = 6.0enterprise_linux_server_aus = 6.2enterprise_linux_workstation = 5.0enterprise_linux_workstation = 6.0Upgrade past the affected range:
icedtea6 1.11.3Connected by shared product, vendor, weakness, or advisory.
CVE-2012-4681Critical· 9.8Multiple vulnerabilities in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier allow remote attackers to execute arbitrary code via a crafted applet that bypasses SecurityManager restrictions by (1) usi…
CVE-2026-87250High· 7.6Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security)
CVE-2026-87249High· 7.1Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security)
CVE-2026-87243High· 8.0Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security)
CVE-2026-87242High· 7.4Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security)
CVE-2026-87241High· 8.1Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security)