CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.0. It affects Java. It may be remotely exploitable.
CVE
CVE-2009-3884
Severity
MEDIUM
CVSS
5
EPSS
2.95%
Java
Original NVD Description
The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.