Lucene search

K
zdiPeter CsepelyZDI-09-077
HistoryNov 04, 2009 - 12:00 a.m.

Sun Java Web Start Arbitrary Command Execution Vulnerability

2009-11-0400:00:00
Peter Csepely
www.zerodayinitiative.com
15

0.103 Low

EPSS

Percentile

95.0%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sun Java WebStart. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists in the implementation of security model permissions during the removal of installer extensions. By modifying an existing installer extension JNLP file, a condition occurs that allows for code supplied by a different URL than the original installer extension URL to run as a secure applet. This condition can result in arbitrary command injection under the privileges of the currently logged in user.