PT-2001-1303 · Apple · Macos Runtime For Java

Published

2001-02-02

·

Updated

2017-12-19

·

CVE-2001-0068

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Mac OS Runtime for Java (MRJ) version 2.2.3
Description: The issue allows remote attackers to use malicious applets to read files outside of the CODEBASE context via the ARCHIVE applet parameter.
Recommendations: For Mac OS Runtime for Java (MRJ) version 2.2.3, consider restricting the use of the ARCHIVE applet parameter to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-0068

Affected Products

Macos Runtime For Java