The Microsoft Java implementation, as used in Internet Explorer, allows remote attackers to read arbitrary local files and network shares via an applet tag with a codebase set to a "file://%00" (null character) URL.
References
Configurations
Information
Published : 2002-11-28 21:00
Updated : 2016-10-17 19:25
NVD link : CVE-2002-1291
Mitre link : CVE-2002-1291
JSON object : View
CWE
Products Affected
microsoft
- java_virtual_machine