Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Microsoft Java implementation, as used in Internet Explorer, allows remote attackers to determine the current directory of the Internet Explorer process via the getAbsolutePath() method in a File() call.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft JVM远程信息泄露漏洞
Vulnerability Description
Microsoft JVM是一款使用在Win32操作环境中的Java虚拟机系统,Microsoft JVM包含在大部分Windows版本中,也既包含在大部分Internet Explorer版本中。Microsoft JVM有的时候也可以通过独立下载获得。 Microsoft JVM由于不充分的访问验证,远程攻击者利用这个漏洞可以构建任意applet获取当前Internet Explorer路径。 由于缺少充分的安全检查,任意Java applet可以通过new File(".").getAbsolute
CVSS Information
N/A
Vulnerability Type
N/A