>> Sun Java Runtime Environment Applet Security Bypass Vulnerability
Title : Sun Java Runtime Environment Applet Security Bypass Vulnerability VUPEN ID : VUPEN/ADV-2005-0764 CVE ID : CVE-2005-1974 CWE ID : CWE-
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-06-14
Technical Description
A vulnerability was identified in Sun Java Runtime Environment, which could be exploited by malicious websites to compromise a vulnerable system. This flaw is due to an unspecified error when handling specially crafted applets, which may be exploited, via a malicious webpage, to bypass the default security policy and read/write arbitrary files on a vulnerable system or execute local applications with the privileges of the user running the untrusted applet.