vendor:
Java SE Runtime Environment
by:
shinnai
7.5
CVSS
HIGH
Multiple Vulnerabilities
CWE
Product Name: Java SE Runtime Environment
Affected Version From: JRE 6 Update 13
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP Professional SP3 with Internet Explorer 8
Java SE Runtime Environment – JRE 6 Update 13 Multiple Vulnerabilities
This exploit targets the Java SE Runtime Environment version 6 Update 13. It allows for remote .jnlp execution and stack-based buffer overflow. The exploit takes advantage of unsafe registry keys and objects with unsafe properties. It has been tested on Windows XP Professional SP3 with Internet Explorer 8.
Mitigation:
Upgrade to a newer version of Java SE Runtime Environment. Apply the latest patches and security updates.