CVE-2012-0504: Oracle JDK
High severity, CVSS 9.3. EPSS: 3.7% chance of exploitation in the next 30 days.
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, and 6 Update 30 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Install and the Java Update mechanism.
Affected products
- Oracle JDK: up to and including 1.7.0; version 1.7.0 only; up to and including 1.6.0; version 1.6.0 only
- Oracle JRE: up to and including 1.7.0; version 1.7.0 only; up to and including 1.6.0; version 1.6.0 only
- Sun JDK: version 1.6.0 only
- Sun JRE: version 1.6.0 only
Published 2012-02-15. Last modified 2026-06-16.