Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 does not properly parse crossdomain.xml files, which allows remote attackers to bypass intended access restrictions and connect to arbitrary sites via unknown vectors, aka CR 6798948.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun Java JDK/JRE Java插件 权限管理和访问控制漏洞
Vulnerability Description
Solaris系统的Java运行时环境(JRE)为JAVA应用程序提供可靠的运行环境。 Sun Java JDK/JRE Java插件 没有正确的处理crossdomain.xml文件,远程攻击者可以通过未明向量绕过预制的访问限制,并且访问任意站点。
CVSS Information
N/A
Vulnerability Type
N/A