Apple Mac OS X Java Plug-in 'file://' URL Handling Remote Code Execution Vulnerability

Bugtraq ID: 31380
Class: Design Error
CVE: CVE-2008-3638
Remote: Yes
Local: No
Published: Sep 25 2008 12:00AM
Updated: Sep 25 2008 04:19PM
Credit: Nitesh Dhanjani and Billy Rios
Vulnerable: Apple Mac OS X Server 10.5.5
Apple Mac OS X Server 10.5.4
Apple Mac OS X Server 10.5.3
Apple Mac OS X Server 10.5.2
Apple Mac OS X Server 10.5.1
Apple Mac OS X Server 10.5
Apple Mac OS X 10.5.5
Apple Mac OS X 10.5.4
Apple Mac OS X 10.5.3
Apple Mac OS X 10.5.2
Apple Mac OS X 10.5.1
Apple Mac OS X 10.5
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus