Unrated severityNVD Advisory· Published Jan 31, 2013· Updated Jun 16, 2026
CVE-2013-1489
CVE-2013-1489
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 10 and Update 11, when running on Windows using Internet Explorer, Firefox, Opera, and Google Chrome, allows remote attackers to bypass the "Very High" security level of the Java Control Panel and execute unsigned Java code without prompting the user via unknown vectors, aka "Issue 53" and the "Java Security Slider" vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:oracle:jdk:1.7.0:update10:*:*:*:windows:*:*+ 1 more
- cpe:2.3:a:oracle:jdk:1.7.0:update10:*:*:*:windows:*:*
- cpe:2.3:a:oracle:jdk:1.7.0:update11:*:*:*:windows:*:*
cpe:2.3:a:oracle:jre:1.7.0:update10:*:*:*:windows:*:*+ 1 more
- cpe:2.3:a:oracle:jre:1.7.0:update10:*:*:*:windows:*:*
- cpe:2.3:a:oracle:jre:1.7.0:update11:*:*:*:windows:*:*
- Range: 7 Update 10, 7 Update 11
Patches
Vulnerability mechanics
References
14- www.oracle.com/technetwork/topics/security/javacpufeb2013-1841061.htmlnvdVendor Advisory
- www.kb.cert.org/vuls/id/858729nvdUS Government Resource
- www.us-cert.gov/cas/techalerts/TA13-032A.htmlnvdUS Government Resource
- blogs.computerworld.com/malware-and-vulnerabilities/21693/yet-another-java-security-flaw-discovered-number-53nvd
- marc.infonvd
- marc.infonvd
- rhn.redhat.com/errata/RHSA-2013-0237.htmlnvd
- seclists.org/fulldisclosure/2013/Jan/241nvd
- thenextweb.com/insider/2013/01/28/new-vulnerability-bypasses-oracles-attempt-to-stop-malware-drive-by-downloads-via-java-applets/nvd
- www.informationweek.com/security/application-security/java-security-work-remains-bug-hunter-sa/240147150nvd
- www.scmagazine.com.au/News/330453%2Cjava-still-unsafe-new-flaws-discovered.aspxnvd
- www.zdnet.com/java-update-doesnt-prevent-silent-exploits-at-all-7000010422/nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15906nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19171nvd
News mentions
0No linked articles in our index yet.