Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jff6-hgp5-xgj5

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote attackers to read or write data belonging to a signed applet.

The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote attackers to read or write data belonging to a signed applet.

EPSS

Процентиль: 86%
0.03109
Низкий

Связанные уязвимости

nvd
около 22 лет назад

The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote attackers to read or write data belonging to a signed applet.

EPSS

Процентиль: 86%
0.03109
Низкий