CVE-2012-1723
KEV RANSOMWAREHIGH 10.0EPSS 93.7%
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.2_37 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 10.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 93.69% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2022-03-03, used in ransomware campaigns
- Published
- 2012-06-16
- Updated
- 2026-08-06
Proof-of-concept exploits (2)
- EthanNJC/CVE-2012-17230★ · 2017-02-20
- S3N4T0R-0X0/Energetic-Bear-APT6★ · 2024-05-11