CVE-2012-1723: Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.237 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
Other sources
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE allows remote attackers to affect confidentiality, integrity, and availability via Unknown vectors related to Hotspot.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1723?
CVE-2012-1723 has a medium severity rating due to its potential impact on confidentiality, integrity, and availability.
How do I fix CVE-2012-1723?
To fix CVE-2012-1723, update the Java Runtime Environment (JRE) or Java Development Kit (JDK) to the latest version provided by Oracle.
Which versions are affected by CVE-2012-1723?
CVE-2012-1723 affects Oracle Java SE 7 update 4 and earlier, as well as several earlier versions of Java 6 and 5.
Can CVE-2012-1723 be exploited remotely?
Yes, CVE-2012-1723 can be exploited remotely, allowing attackers to affect the system without direct access.
What common applications use the affected products in CVE-2012-1723?
Common applications that may use the affected products include web browsers and enterprise applications that rely on Java applets.