Apple QuickTime prior to 7.4.5 enables deserialization of QTJava objects by untrusted Java applets, which allows remote malicious users to execute arbitrary code via a crafted applet.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple quicktime |