Tenable calculates a dynamic VPR for every vulnerability. VPR combines vulnerability information with threat intelligence and machine learning algorithms to predict which vulnerabilities are most likely to be exploited in attacks. Read more about what VPR is and how it is different from CVSS.
VPR Score: 9.4
https://access.redhat.com/security/cve/cve-2008-2086
https://access.redhat.com/security/cve/cve-2008-5339
https://access.redhat.com/security/cve/cve-2008-5340
https://access.redhat.com/security/cve/cve-2008-5341
https://access.redhat.com/security/cve/cve-2008-5342
https://access.redhat.com/security/cve/cve-2008-5343
https://access.redhat.com/security/cve/cve-2008-5344
https://access.redhat.com/security/cve/cve-2008-5345
https://access.redhat.com/security/cve/cve-2008-5346
https://access.redhat.com/security/cve/cve-2008-5348
https://access.redhat.com/security/cve/cve-2008-5349
https://access.redhat.com/security/cve/cve-2008-5350
https://access.redhat.com/security/cve/cve-2008-5351
https://access.redhat.com/security/cve/cve-2008-5352
https://access.redhat.com/security/cve/cve-2008-5353
https://access.redhat.com/security/cve/cve-2008-5354
https://access.redhat.com/security/cve/cve-2008-5356
https://access.redhat.com/security/cve/cve-2008-5357
https://access.redhat.com/security/cve/cve-2008-5359
https://access.redhat.com/security/cve/cve-2008-5360
Severity: Critical
ID: 40732
File Name: redhat-RHSA-2008-1025.nasl
Version: 1.31
Type: local
Agent: unix
Family: Red Hat Local Security Checks
Published: 8/24/2009
Updated: 1/14/2021
Dependencies: 12634
Risk Factor: Critical
VPR Score: 9.4
Base Score: 10
Temporal Score: 8.7
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C
Temporal Vector: E:H/RL:OF/RC:C
CPE: p-cpe:/a:redhat:enterprise_linux:java-1.5.0-sun, p-cpe:/a:redhat:enterprise_linux:java-1.5.0-sun-demo, p-cpe:/a:redhat:enterprise_linux:java-1.5.0-sun-devel, p-cpe:/a:redhat:enterprise_linux:java-1.5.0-sun-jdbc, p-cpe:/a:redhat:enterprise_linux:java-1.5.0-sun-plugin, p-cpe:/a:redhat:enterprise_linux:java-1.5.0-sun-src, cpe:/o:redhat:enterprise_linux:4, cpe:/o:redhat:enterprise_linux:4.7, cpe:/o:redhat:enterprise_linux:5, cpe:/o:redhat:enterprise_linux:5.2
Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 12/4/2008
Vulnerability Publication Date: 12/4/2008
CANVAS (CANVAS)
Core Impact
Metasploit (Sun Java Calendar Deserialization Privilege Escalation)
CVE: CVE-2008-2086, CVE-2008-5339, CVE-2008-5340, CVE-2008-5341, CVE-2008-5342, CVE-2008-5343, CVE-2008-5344, CVE-2008-5345, CVE-2008-5346, CVE-2008-5347, CVE-2008-5348, CVE-2008-5349, CVE-2008-5350, CVE-2008-5351, CVE-2008-5352, CVE-2008-5353, CVE-2008-5354, CVE-2008-5355, CVE-2008-5356, CVE-2008-5357, CVE-2008-5358, CVE-2008-5359, CVE-2008-5360