cbcvebase.
CVE-2007-5237
published 2007-10-06

CVE-2007-5237: Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted…

high7.1CVSS 3.1
AVNACHAuNCCICAN
Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to read and modify local files via an untrusted application, aka "two vulnerabilities."

Affected

2 ranges
VendorProductVersion rangeFixed in
sunjdk<= 1.6.0
sunjre<= 1.6.0