CyberSec.Space Logo
返回 CVE 浏览器

CVE-2007-3715

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.0580%
EPSS Percentile25.17th
Published2007年7月11日
Last Modified2026年4月23日

Vulnerability Description

Sun Java System Application Server and Web Server 7.0 through 9.0 before 20070710 do not properly process XSLT stylesheets in XSLT transforms in XML signatures, which allows context-dependent attackers to execute an arbitrary Java method via a crafted stylesheet, a related issue to CVE-2007-3716.

Affected Platforms (CPE)

📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 8.2
📦
Sun

Java System Application Server

= 9.0
📦
Sun

Java System Application Server

= 9.0
📦
Sun

Java System Application Server

= 9.0
📦
Sun

Java System Application Server

= 9.0
📦
Sun

Java System Application Server

= 9.0
📦
Sun

Java System Web Server

= 7.0
📦
Sun

Java System Web Server

= 7.0
📦
Sun

Java System Web Server

= 7.0
📦
Sun

Java System Web Server

= 7.0
📦
Sun

Java System Web Server

= 7.0
📦
Sun

Java System Web Server

= 7.0

References & Advisories

相关漏洞威胁