
hemavady_sk asked a question.
jre is unzipped by IA and it is kept in the machine after installation (this jre is used for uninstallation later). it leads jre package as part of our application and it is vulnerable if the IA is not upgraded regularly to get recent jre.
now already installed machines are vulnerable due to the jre package left by the ia in our application server