|
Adobe PhotoDeluxe Java Execution Vulnerability
Adobe PhotoDeluxe is image editing/photo album software that ships with a number of imaging devices. It runs on Microsoft Windows 9x/ME/NT/2000/XP operating systems. Adobe PhotoDeluxe installs sensitive Java code in a public location. One of Adobe PhotoDeluxe's features is to allow users to download extra design elements from the Adobe website. The functionality is called "Connectables" and is accomplished via the installation of Java code on the user's system. However, the Java applet is installed in an insecure manner, which may be exploited by malicious webpages or HTML e-mail viewed through the Internet Explorer web browser. This may grant unauthorized access to sensitive information on an affected user's system. This problem, in some cases, may also result in the execution of arbitrary code. Versions of Adobe PhotoDeluxe also exist for MacOS, though it is not known whether they are affected by this issue. |
|
|
Privacy Statement |