Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wr78-fj5w-cgcv

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Apple QuickTime for Java 7.1.6 on Mac OS X and Windows does not properly restrict QTObject subclassing, which allows remote attackers to execute arbitrary code via a web page containing a user-defined class that accesses unsafe functions that can be leveraged to write to arbitrary memory locations.

Apple QuickTime for Java 7.1.6 on Mac OS X and Windows does not properly restrict QTObject subclassing, which allows remote attackers to execute arbitrary code via a web page containing a user-defined class that accesses unsafe functions that can be leveraged to write to arbitrary memory locations.

EPSS

Процентиль: 89%
0.0508
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

Apple QuickTime for Java 7.1.6 on Mac OS X and Windows does not properly restrict QTObject subclassing, which allows remote attackers to execute arbitrary code via a web page containing a user-defined class that accesses unsafe functions that can be leveraged to write to arbitrary memory locations.

EPSS

Процентиль: 89%
0.0508
Низкий