CVE-2007-5237: High severity Java Development Kit (JDK) vulnerability
Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to read and modify local files via an untrusted application, aka "two vulnerabilities."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5237?
CVE-2007-5237 has a high severity rating due to its potential to allow remote attackers to read and modify local files.
How do I fix CVE-2007-5237?
To fix CVE-2007-5237, update to Sun JDK and JRE version 6 Update 3 or later.
What types of software are affected by CVE-2007-5237?
CVE-2007-5237 affects Sun JDK and JRE version 6 Update 2 and earlier.
Can CVE-2007-5237 be exploited without user interaction?
Yes, CVE-2007-5237 requires user-assisted actions for exploitation, allowing untrusted applications to bypass access restrictions.
What are the potential impacts of CVE-2007-5237?
The impact of CVE-2007-5237 can include unauthorized access to sensitive local files and modification of those files by attackers.