Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, does not prevent access to browser cookies by untrusted (1) applets and (2) Java Web Start applications, which allows remote attackers to hijack web sessions via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun Java运行时环境代理机制 会话固定漏洞
Vulnerability Description
Solaris系统的Java运行时环境(JRE)为JAVA应用程序提供可靠的运行环境。 Java运行时环境代理机制实现中的漏洞可能允许不可信任的Applet或Java Web Start应用获得浏览器Cookie,并利用这些Cookie劫持会话 。
CVSS Information
N/A
Vulnerability Type
N/A